CVE-2006-1935: Buffer Overflow
Published Apr 25, 2006
·Updated
Buffer overflow in Ethereal 0.9.15 up to 0.10.14 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the COPS dissector.
Affected Software
18 affected components
Ethereal Group Ethereal=0.9.15
Ethereal Group Ethereal=0.9.16
Ethereal Group Ethereal=0.10
Ethereal Group Ethereal=0.10.0
Ethereal Group Ethereal=0.10.0a
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Ethereal Group Ethereal=0.10.10
Ethereal Group Ethereal=0.10.11
Ethereal Group Ethereal=0.10.12
Ethereal Group Ethereal=0.10.13
Remediation
Patch Available
Event History
Apr 25, 2006
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1935?
CVE-2006-1935 is classified as a high severity vulnerability due to its ability to cause a denial of service and potential arbitrary code execution.
2
How do I fix CVE-2006-1935?
To fix CVE-2006-1935, upgrade Ethereal to a version above 0.10.14 which has patched the buffer overflow.
3
What software versions are affected by CVE-2006-1935?
CVE-2006-1935 affects Ethereal versions 0.9.15 through 0.10.14.
4
What type of attack can CVE-2006-1935 enable?
CVE-2006-1935 can enable remote attackers to exploit the vulnerability for denial of service attacks and potentially gain control over the affected system.
5
Is there a known exploit for CVE-2006-1935?
Yes, there are known exploits that can leverage CVE-2006-1935 to exploit the buffer overflow vulnerability.