Summary
The remote host is missing an update to ethereal
announced via advisory DSA 653-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20653-1
Insight
A buffer overflow has been detected in the X11 dissector of ethereal, a commonly used network traffic analyser. A remote attacker may be able to overflow a buffer using a specially crafted IP packet. More problems have been discovered which don't apply to the version in woody but are fixed in sid as well.
For the stable distribution (woody) this problem has been fixed in version 0.9.4-1woody11.
For the unstable distribution (sid) this problem has been fixed in version 0.10.9-1.
We recommend that you upgrade your ethereal package.
Severity
Classification
-
CVE CVE-2005-0084 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities