CVE-2006-1940: Medium severity Ethereal Group Ethereal vulnerability
Published Apr 25, 2006
·Updated
Unspecified vulnerability in Ethereal 0.10.4 up to 0.10.14 allows remote attackers to cause a denial of service (abort) via the SNDCP dissector.
Affected Software
16 affected components
Ethereal Group Ethereal=0.10.1
Ethereal Group Ethereal=0.10.0a
Ethereal Group Ethereal=0.10.10
Ethereal Group Ethereal=0.10.2
Ethereal Group Ethereal=0.10.13
Ethereal Group Ethereal=0.10.3
Ethereal Group Ethereal=0.10.4
Ethereal Group Ethereal=0.10.7
Ethereal Group Ethereal=0.10.12
Ethereal Group Ethereal=0.10.11
Ethereal Group Ethereal=0.10.5
Ethereal Group Ethereal=0.10.0
Ethereal Group Ethereal=0.10
Ethereal Group Ethereal=0.10.6
Ethereal Group Ethereal=0.10.8
Ethereal Group Ethereal=0.10.9
Remediation
Patch Available
Event History
Apr 25, 2006
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1940?
CVE-2006-1940 is classified as a denial of service vulnerability that can result in application crashes.
2
How do I fix CVE-2006-1940?
To fix CVE-2006-1940, you should update Ethereal to a version that is not affected by the vulnerability, such as versions after 0.10.14.
3
Which versions of Ethereal are affected by CVE-2006-1940?
CVE-2006-1940 affects Ethereal versions from 0.10.1 to 0.10.14.
4
Can CVE-2006-1940 be exploited remotely?
Yes, CVE-2006-1940 allows remote attackers to exploit the vulnerability through specially crafted packets.
5
What impact does CVE-2006-1940 have on system security?
The impact of CVE-2006-1940 is a denial of service, meaning it can disrupt service availability by crashing the Ethereal application.