CVE-2005-4585: High severity Ethereal Group Ethereal vulnerability
Published Dec 29, 2005
·Updated
Unspecified vulnerability in the GTP dissector for Ethereal 0.9.1 to 0.10.13 allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors.
Affected Software
30 affected components
Ethereal Group Ethereal=0.9.1
Ethereal Group Ethereal=0.9.2
Ethereal Group Ethereal=0.9.3
Ethereal Group Ethereal=0.9.4
Ethereal Group Ethereal=0.9.5
Ethereal Group Ethereal=0.9.6
Ethereal Group Ethereal=0.9.7
Ethereal Group Ethereal=0.9.8
Ethereal Group Ethereal=0.9.9
Ethereal Group Ethereal=0.9.10
Ethereal Group Ethereal=0.9.11
Ethereal Group Ethereal=0.9.12
Ethereal Group Ethereal=0.9.13
Ethereal Group Ethereal=0.9.14
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.10
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Ethereal Group Ethereal=0.10.10
Ethereal Group Ethereal=0.10.11
Ethereal Group Ethereal=0.10.12
Ethereal Group Ethereal=0.10.13
Remediation
Patch Available
Patch Available
Event History
Dec 29, 2005
CVE Published
via NVD·11:03 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-4585?
CVE-2005-4585 has a severity level of Medium, primarily due to its potential to cause a denial of service.
2
How do I fix CVE-2005-4585?
To address CVE-2005-4585, upgrade to a version of Ethereal that is newer than 0.10.13 or 0.9.16.
3
What software is affected by CVE-2005-4585?
CVE-2005-4585 affects Ethereal versions 0.9.1 through 0.10.13.
4
What type of vulnerability is CVE-2005-4585?
CVE-2005-4585 is a denial of service vulnerability caused by an infinite loop in the GTP dissector of Ethereal.
5
Can CVE-2005-4585 be exploited remotely?
Yes, CVE-2005-4585 can be exploited remotely by attackers to induce a denial of service.