Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.56652
Categoría:FreeBSD Local Security Checks
Título:FreeBSD Ports: ethereal, ethereal-lite, tethereal, tethereal-lite
Resumen:The remote host is missing an update to the system; as announced in the referenced advisory.
Descripción:Summary:
The remote host is missing an update to the system
as announced in the referenced advisory.

Vulnerability Insight:
The following packages are affected:

ethereal
ethereal-lite
tethereal
tethereal-lite

CVE-2006-1932
Off-by-one error in the OID printing routine in Ethereal 0.10.x up to
0.10.14 has unknown impact and remote attack vectors.

CVE-2006-1933
Multiple unspecified vulnerabilities in Ethereal 0.10.x up to 0.10.14
allow remote attackers to cause a denial of service (large or infinite
loops) viarafted packets to the (1) UMA and (2) BER dissectors.

CVE-2006-1934
Multiple buffer overflows in Ethereal 0.10.x up to 0.10.14 allow
remote attackers to cause a denial of service (crash) and possibly
execute arbitrary code via the (1) ALCAP dissector, (2) Network
Instruments file code, or (3) NetXray/Windows Sniffer file code.

CVE-2006-1935
Buffer overflow in Ethereal 0.9.15 up to 0.10.14 allows remote
attackers to cause a denial of service (crash) and possibly execute
arbitrary code via the COPS dissector.

CVE-2006-1936
Buffer overflow in Ethereal 0.8.5 up to 0.10.14 allows remote
attackers to execute arbitrary code via the telnet dissector.

CVE-2006-1937
Multiple unspecified vulnerabilities in Ethereal 0.10.x up to 0.10.14
allow remote attackers to cause a denial of service (crash from null
dereference) via the (1) H.248, (2) X.509if, (3) SRVLOC, (4) H.245,
(5) AIM, and (6) general packet dissectors, and (7) the statistics
counter.

CVE-2006-1938
Multiple unspecified vulnerabilities in Ethereal 0.8.x up to 0.10.14
allow remote attackers to cause a denial of service (crash from null
dereference) via the (1) Sniffer capture or (2) SMB PIPE dissector.

CVE-2006-1939
Multiple unspecified vulnerabilities in Ethereal 0.9.x up to 0.10.14
allow remote attackers to cause a denial of service (crash from null
dereference) via (1) an invalid display filter, or the (2) GSM SMS,
(3) ASN.1-based, (4) DCERPC NT, (5) PER, (6) RPC, (7) DCERPC, and (8)
ASN.1 dissectors.

CVE-2006-1940
Unspecified vulnerability in Ethereal 0.10.4 up to 0.10.14 allows
remote attackers to cause a denial of service (abort) via the SNDCP
dissector.

Solution:
Update your system with the appropriate patches or
software upgrades.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2006-1932
1015985
http://securitytracker.com/id?1015985
17682
http://www.securityfocus.com/bid/17682
19769
http://secunia.com/advisories/19769
19805
http://secunia.com/advisories/19805
19828
http://secunia.com/advisories/19828
19839
http://secunia.com/advisories/19839
19958
http://secunia.com/advisories/19958
19962
http://secunia.com/advisories/19962
20060501-01-U
ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.asc
20117
http://secunia.com/advisories/20117
20210
http://secunia.com/advisories/20210
20944
http://secunia.com/advisories/20944
ADV-2006-1501
http://www.vupen.com/english/advisories/2006/1501
DSA-1049
http://www.debian.org/security/2006/dsa-1049
FEDORA-2006-456
http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00194.html
FEDORA-2006-461
http://www.redhat.com/archives/fedora-announce-list/2006-April/msg00195.html
GLSA-200604-17
http://www.gentoo.org/security/en/glsa/glsa-200604-17.xml
MDKSA-2006:077
http://www.mandriva.com/security/advisories?name=MDKSA-2006:077
RHSA-2006:0420
http://www.redhat.com/support/errata/RHSA-2006-0420.html
SUSE-SR:2006:010
http://lists.suse.com/archive/suse-security-announce/2006-May/0004.html
ethereal-oid-printing-offbyone(26012)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26012
http://support.avaya.com/elmodocs2/security/ASA-2006-128.htm
http://www.ethereal.com/appnotes/enpa-sa-00023.html
oval:org.mitre.oval:def:9823
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9823
Common Vulnerability Exposure (CVE) ID: CVE-2006-1933
ethereal-ber-loop-dos(26024)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26024
ethereal-uma-dissector-dos(26008)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26008
oval:org.mitre.oval:def:10841
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10841
Common Vulnerability Exposure (CVE) ID: CVE-2006-1934
ethereal-alcap-dissector-bo(26014)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26014
ethereal-net-instr-bo(26026)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26026
ethereal-netxwin-sniffer-bo(26027)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26027
oval:org.mitre.oval:def:10445
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10445
Common Vulnerability Exposure (CVE) ID: CVE-2006-1935
ethereal-cops-dissector-bo(26013)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26013
oval:org.mitre.oval:def:10811
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10811
Common Vulnerability Exposure (CVE) ID: CVE-2006-1936
ethereal-telnet-dissector-bo(26029)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26029
oval:org.mitre.oval:def:10341
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10341
Common Vulnerability Exposure (CVE) ID: CVE-2006-1937
ethereal-aim-dos(26019)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26019
ethereal-general-dissector-dos(26018)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26018
ethereal-h245-dos(26011)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26011
ethereal-h248-dissector-dos(26007)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26007
ethereal-h248-dos(26031)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26031
ethereal-srvloc-dos(26010)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26010
ethereal-statistics-counter-dos(26015)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26015
ethereal-x509if-dissector-dos(26009)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26009
oval:org.mitre.oval:def:10323
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10323
Common Vulnerability Exposure (CVE) ID: CVE-2006-1938
ethereal-smbpipe-dos(26023)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26023
ethereal-sniffer-capture-dos(26016)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26016
oval:org.mitre.oval:def:9850
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9850
Common Vulnerability Exposure (CVE) ID: CVE-2006-1939
ethereal-asn1-dissector-dos(26022)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26022
ethereal-asn1based-dissector-dos(26030)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26030
ethereal-dcerpc-dissector-dos(26021)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26021
ethereal-dcerpcnt-dissector-dos(26032)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26032
ethereal-display-filter-dos(26017)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26017
ethereal-gsmsms-dissector-dos(26028)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26028
ethereal-per-diss-dos(26033)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26033
ethereal-rpc-dos(26020)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26020
oval:org.mitre.oval:def:11030
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11030
Common Vulnerability Exposure (CVE) ID: CVE-2006-1940
ethereal-sndcp-dissector-dos(26025)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26025
oval:org.mitre.oval:def:9781
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9781
CopyrightCopyright (C) 2008 E-Soft Inc.

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.