漏洞信息详情
Ethereal 多个未明漏洞
- CNNVD编号:CNNVD-200604-479
- 危害等级: 中危
- CVE编号:
CVE-2006-1939
- 漏洞类型:
资料不足
- 发布时间:
2006-04-25
- 威胁类型:
远程
- 更新时间:
2006-04-26
- 厂 商:
ethereal_group - 漏洞来源:
Coverity discovere… -
漏洞简介
Ethereal 0.9.x至0.10.14版本中存在多个未明漏洞。这使得远程攻击者可以借助于(1)无效的显示过滤器,或(2)GSM SMS、(3)ASN.1-based、(4) DCERPC NT、(5) PER、(6)RPC、(7)DCERPC及(8)ASN.1 分析器造成拒绝服务(由空值解引用而造成的崩溃)。
漏洞公告
目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:
Ethereal Group Ethereal 0.10 .10
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.1
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.11
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
RedHat ethereal-0.99.0-fc4.1.i386.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-0.99.0-fc4.1.ppc.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-0.99.0-fc4.1.src.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-0.99.0-fc4.1.x86_64.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-debuginfo-0.99.0-fc4.1.i386.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-debuginfo-0.99.0-fc4.1.ppc.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-debuginfo-0.99.0-fc4.1.x86_64.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-gnome-0.99.0-fc4.1.i386.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-gnome-0.99.0-fc4.1.ppc.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
RedHat ethereal-gnome-0.99.0-fc4.1.x86_64.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/
Ethereal Group Ethereal 0.10.13
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.2
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.3
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.4
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.5
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.6
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.7
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.8
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.9
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.8.5
Ethereal Group Ethereal 0.99.0
http://www.ethereal.com/download.html
参考网址
来源: VUPEN
名称: ADV-2006-1501
链接:http://www.frsirt.com/english/advisories/2006/1501
来源: www.ethereal.com
链接:http://www.ethereal.com/appnotes/enpa-sa-00023.html
来源: XF
名称: ethereal-per-diss-dos(26033)
链接:http://xforce.iss.net/xforce/xfdb/26033
来源: XF
名称: ethereal-dcerpcnt-dissector-dos(26032)
链接:http://xforce.iss.net/xforce/xfdb/26032
来源: XF
名称: ethereal-asn1based-dissector-dos(26030)
链接:http://xforce.iss.net/xforce/xfdb/26030
来源: XF
名称: ethereal-gsmsms-dissector-dos(26028)
链接:http://xforce.iss.net/xforce/xfdb/26028
来源: XF
名称: ethereal-asn1-dissector-dos(26022)
链接:http://xforce.iss.net/xforce/xfdb/26022
来源: XF
名称: ethereal-dcerpc-dissector-dos(26021)
链接:http://xforce.iss.net/xforce/xfdb/26021
来源: XF
名称: ethereal-rpc-dos(26020)
链接:http://xforce.iss.net/xforce/xfdb/26020
来源: XF
名称: ethereal-display-filter-dos(26017)
链接:http://xforce.iss.net/xforce/xfdb/26017
来源: BID
名称: 17682
链接:http://www.securityfocus.com/bid/17682
来源: REDHAT
名称: RHSA-2006:0420
链接:http://www.redhat.com/support/errata/RHSA-2006-0420.html
来源: FEDORA
名称: FEDORA-2006-461
链接:http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00195.html
来源: FEDORA
名称: FEDORA-2006-456
链接:http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00194.html
来源: MANDRIVA
名称: MDKSA-2006:077
链接:http://www.mandriva.com/security/advisories?name=MDKSA-2006:077
来源: GENTOO
名称: GLSA-200604-17
链接:http://www.gentoo.org/security/en/glsa/glsa-200604-17.xml
来源: DEBIAN
名称: DSA-1049
链接:http://www.debian.org/security/2006/dsa-1049
来源: support.avaya.com
链接:http://support.avaya.com/elmodocs2/security/ASA-2006-128.htm
来源: SECTRACK
名称: 1015985
链接:http://securitytracker.com/id?1015985
来源: SECUNIA
名称: 20944
链接:http://secunia.com/advisories/20944
来源: SECUNIA
名称: 20210
链接:http://secunia.com/advisories/20210
来源: SECUNIA
名称: 20117
链接:http://secunia.com/advisories/20117
来源: SECUNIA
名称: 19962
链接:http://secunia.com/advisories/19962
来源: SECUNIA
名称: 19958
链接:http://secunia.com/advisories/19958
来源: SECUNIA
名称: 19839
链接:http://secunia.com/advisories/19839
来源: SECUNIA
名称: 19828
链接:http://secunia.com/advisories/19828
来源: SECUNIA
名称: 19805
链接:http://secunia.com/advisories/19805
来源: SECUNIA
名称: 19769
链接:http://secunia.com/advisories/19769
来源: SUSE
名称: SUSE-SR:2006:010
链接:http://lists.suse.com/archive/suse-security-announce/2006-May/0004.html
来源: MANDRIVA
名称: MDKSA-2006:077
链接:http://frontal2.mandriva.com/security/advisories?name=MDKSA-2006:077
来源: SGI
名称: 20060501-01-U
链接:ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.asc