Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.55981
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2005:227 (ethereal)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to ethereal
announced via advisory MDKSA-2005:227.

A stack-based buffer overflow was discovered in the OSPF dissector in
Ethereal. This could potentially be abused to allow remote attackers
to execute arbitrary code via crafted packets.

The updated packages have been patched to prevent this problem.

Affected: 2006.0

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2005:227

Risk factor : High

CVSS Score:
7.5

Cross-Ref: BugTraq ID: 15794
Common Vulnerability Exposure (CVE) ID: CVE-2005-3651
http://www.securityfocus.com/bid/15794
Debian Security Information: DSA-920 (Google Search)
http://www.debian.org/security/2005/dsa-920
http://www.gentoo.org/security/en/glsa/glsa-200512-06.xml
http://www.idefense.com/application/poi/display?id=349&type=vulnerabilities
http://www.mandriva.com/security/advisories?name=MDKSA-2005:227
http://www.mandriva.com/security/advisories?name=MDKSA-2006:002
http://anonsvn.ethereal.com/viewcvs/viewcvs.py/trunk/epan/dissectors/packet-ospf.c
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11286
http://www.redhat.com/support/errata/RHSA-2006-0156.html
http://securitytracker.com/id?1015337
http://secunia.com/advisories/17973
http://secunia.com/advisories/18012
http://secunia.com/advisories/18062
http://secunia.com/advisories/18331
http://secunia.com/advisories/18426
http://secunia.com/advisories/18911
http://secunia.com/advisories/19012
http://secunia.com/advisories/19230
SGI Security Advisory: 20060201-01-U
ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U
http://securityreason.com/securityalert/247
SuSE Security Announcement: SUSE-SR:2006:004 (Google Search)
http://lists.suse.de/archive/suse-security-announce/2006-Feb/0008.html
http://www.vupen.com/english/advisories/2005/2830
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.