Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 526
Alerts This Week
Warning Icon 1 526

Gentoo: GLSA-200512-06 High: Ethereal OSPF Buffer Overflow Risk

gentoo
Calendar Grey December 14, 2005
Scroller Gentoo
Transcendental exhibits a critical vulnerability related to buffer overflow in the OSPF parser. It is recommended to execute an upgrade for enhanced security.
Ethereal is missing bounds checking in the OSPF protocol dissector that could lead to abnormal program termination or the execution of arbitrary code

Summary

Gentoo Linux Security Advisory GLSA 200512-06 https://security.gentoo.org/ Severity: High Title: Ethereal: Buffer overflow in OSPF protocol dissector Date: December 14, 2005 Bugs: #115030 ID: 200512-06

Synopsis ======= Ethereal is missing bounds checking in the OSPF protocol dissector that could lead to abnormal program termination or the execution of arbitrary code.
Background ========= Ethereal is a feature-rich network protocol analyzer. It provides protocol analyzers for various network flows, including one for Open Shortest Path First (OSPF) Interior Gateway Protocol.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-analyzer/ethereal < 0.10.13-r2 >= 0.10.13-r2
...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround