CVE-2005-3651

Stack-based buffer overflow in the dissect_ospf_v3_address_prefix function in the OSPF protocol dissector in Ethereal 0.10.12, and possibly other versions, allows remote attackers to execute arbitrary code via crafted packets.
References
Link Resource
ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U
http://anonsvn.ethereal.com/viewcvs/viewcvs.py/trunk/epan/dissectors/packet-ospf.c URL Repurposed
http://lists.suse.de/archive/suse-security-announce/2006-Feb/0008.html
http://secunia.com/advisories/17973
http://secunia.com/advisories/18012
http://secunia.com/advisories/18062
http://secunia.com/advisories/18331
http://secunia.com/advisories/18426
http://secunia.com/advisories/18911
http://secunia.com/advisories/19012
http://secunia.com/advisories/19230
http://securityreason.com/securityalert/247
http://securitytracker.com/id?1015337
http://www.debian.org/security/2005/dsa-920
http://www.ethereal.com/appnotes/enpa-sa-00022.html URL Repurposed
http://www.gentoo.org/security/en/glsa/glsa-200512-06.xml
http://www.idefense.com/application/poi/display?id=349&type=vulnerabilities Patch Vendor Advisory
http://www.mandriva.com/security/advisories?name=MDKSA-2005:227
http://www.mandriva.com/security/advisories?name=MDKSA-2006:002
http://www.redhat.com/support/errata/RHSA-2006-0156.html
http://www.securityfocus.com/bid/15794 Patch
http://www.vupen.com/english/advisories/2005/2830
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11286
ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U
http://anonsvn.ethereal.com/viewcvs/viewcvs.py/trunk/epan/dissectors/packet-ospf.c URL Repurposed
http://lists.suse.de/archive/suse-security-announce/2006-Feb/0008.html
http://secunia.com/advisories/17973
http://secunia.com/advisories/18012
http://secunia.com/advisories/18062
http://secunia.com/advisories/18331
http://secunia.com/advisories/18426
http://secunia.com/advisories/18911
http://secunia.com/advisories/19012
http://secunia.com/advisories/19230
http://securityreason.com/securityalert/247
http://securitytracker.com/id?1015337
http://www.debian.org/security/2005/dsa-920
http://www.ethereal.com/appnotes/enpa-sa-00022.html URL Repurposed
http://www.gentoo.org/security/en/glsa/glsa-200512-06.xml
http://www.idefense.com/application/poi/display?id=349&type=vulnerabilities Patch Vendor Advisory
http://www.mandriva.com/security/advisories?name=MDKSA-2005:227
http://www.mandriva.com/security/advisories?name=MDKSA-2006:002
http://www.redhat.com/support/errata/RHSA-2006-0156.html
http://www.securityfocus.com/bid/15794 Patch
http://www.vupen.com/english/advisories/2005/2830
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11286
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ethereal_group:ethereal:0.7.7:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.8:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.8.5:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.8.13:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.8.14:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.8.15:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.8.18:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.8.19:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.1:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.2:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.3:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.4:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.5:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.6:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.7:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.8:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.9:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.10:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.11:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.12:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.13:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.14:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.15:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.9.16:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.1:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.2:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.3:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.4:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.5:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.6:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.7:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.8:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.9:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.10:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.11:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.12:*:*:*:*:*:*:*
cpe:2.3:a:ethereal_group:ethereal:0.10.13:*:*:*:*:*:*:*

History

21 Nov 2024, 00:02

Type Values Removed Values Added
References () ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U - () ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U -
References () http://anonsvn.ethereal.com/viewcvs/viewcvs.py/trunk/epan/dissectors/packet-ospf.c - URL Repurposed () http://anonsvn.ethereal.com/viewcvs/viewcvs.py/trunk/epan/dissectors/packet-ospf.c - URL Repurposed
References () http://lists.suse.de/archive/suse-security-announce/2006-Feb/0008.html - () http://lists.suse.de/archive/suse-security-announce/2006-Feb/0008.html -
References () http://secunia.com/advisories/17973 - () http://secunia.com/advisories/17973 -
References () http://secunia.com/advisories/18012 - () http://secunia.com/advisories/18012 -
References () http://secunia.com/advisories/18062 - () http://secunia.com/advisories/18062 -
References () http://secunia.com/advisories/18331 - () http://secunia.com/advisories/18331 -
References () http://secunia.com/advisories/18426 - () http://secunia.com/advisories/18426 -
References () http://secunia.com/advisories/18911 - () http://secunia.com/advisories/18911 -
References () http://secunia.com/advisories/19012 - () http://secunia.com/advisories/19012 -
References () http://secunia.com/advisories/19230 - () http://secunia.com/advisories/19230 -
References () http://securityreason.com/securityalert/247 - () http://securityreason.com/securityalert/247 -
References () http://securitytracker.com/id?1015337 - () http://securitytracker.com/id?1015337 -
References () http://www.debian.org/security/2005/dsa-920 - () http://www.debian.org/security/2005/dsa-920 -
References () http://www.ethereal.com/appnotes/enpa-sa-00022.html - URL Repurposed () http://www.ethereal.com/appnotes/enpa-sa-00022.html - URL Repurposed
References () http://www.gentoo.org/security/en/glsa/glsa-200512-06.xml - () http://www.gentoo.org/security/en/glsa/glsa-200512-06.xml -
References () http://www.idefense.com/application/poi/display?id=349&type=vulnerabilities - Patch, Vendor Advisory () http://www.idefense.com/application/poi/display?id=349&type=vulnerabilities - Patch, Vendor Advisory
References () http://www.mandriva.com/security/advisories?name=MDKSA-2005:227 - () http://www.mandriva.com/security/advisories?name=MDKSA-2005:227 -
References () http://www.mandriva.com/security/advisories?name=MDKSA-2006:002 - () http://www.mandriva.com/security/advisories?name=MDKSA-2006:002 -
References () http://www.redhat.com/support/errata/RHSA-2006-0156.html - () http://www.redhat.com/support/errata/RHSA-2006-0156.html -
References () http://www.securityfocus.com/bid/15794 - Patch () http://www.securityfocus.com/bid/15794 - Patch
References () http://www.vupen.com/english/advisories/2005/2830 - () http://www.vupen.com/english/advisories/2005/2830 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11286 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11286 -

14 Feb 2024, 01:17

Type Values Removed Values Added
References (MISC) http://anonsvn.ethereal.com/viewcvs/viewcvs.py/trunk/epan/dissectors/packet-ospf.c - (MISC) http://anonsvn.ethereal.com/viewcvs/viewcvs.py/trunk/epan/dissectors/packet-ospf.c - URL Repurposed
References (CONFIRM) http://www.ethereal.com/appnotes/enpa-sa-00022.html - (CONFIRM) http://www.ethereal.com/appnotes/enpa-sa-00022.html - URL Repurposed

Information

Published : 2005-12-10 11:03

Updated : 2024-11-21 00:02


NVD link : CVE-2005-3651

Mitre link : CVE-2005-3651

CVE.ORG link : CVE-2005-3651


JSON object : View

Products Affected

ethereal_group

  • ethereal