CVE-2005-3651: Buffer Overflow
Published Dec 10, 2005
·Updated
Stack-based buffer overflow in the dissectospfv3addressprefix function in the OSPF protocol dissector in Ethereal 0.10.12, and possibly other versions, allows remote attackers to execute arbitrary code via crafted packets.
Affected Software
39 affected components
Ethereal Group Ethereal=0.7.7
Ethereal Group Ethereal=0.8
Ethereal Group Ethereal=0.8.5
Ethereal Group Ethereal=0.8.13
Ethereal Group Ethereal=0.8.14
Ethereal Group Ethereal=0.8.15
Ethereal Group Ethereal=0.8.18
Ethereal Group Ethereal=0.8.19
Ethereal Group Ethereal=0.9
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.10
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Ethereal Group Ethereal=0.10.10
Ethereal Group Ethereal=0.10.11
Ethereal Group Ethereal=0.10.12
Ethereal Group Ethereal=0.10.13
Remediation
Patch Available
Event History
Dec 10, 2005
CVE Published
via NVD·11:03 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3651?
CVE-2005-3651 is classified as a high severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2005-3651?
To mitigate CVE-2005-3651, upgrade Ethereal to a version that is not affected, such as any version later than 0.10.12.
3
What versions of Ethereal are affected by CVE-2005-3651?
CVE-2005-3651 affects various versions of Ethereal, including 0.7.7 up to 0.10.12.
4
Can CVE-2005-3651 be exploited remotely?
Yes, CVE-2005-3651 can be exploited remotely through crafted OSPF packets sent to the vulnerable Ethereal application.
5
What type of vulnerability is CVE-2005-3651?
CVE-2005-3651 is a stack-based buffer overflow vulnerability.