CVE-2004-0176 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 67.1% (pctl 99)
Patch early
A public exploit exists.
Description
Multiple buffer overflows in Ethereal 0.8.13 to 0.10.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) NetFlow, (2) IGAP, (3) EIGRP, (4) PGM, (5) IrDA, (6) BGP, (7) ISUP, or (8) TCAP dissectors.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
| EPSS | 67.09% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2004-05-04 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| ethereal group | ethereal |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Ethereal 0.10.0 < 0.10.2 - IGAP Overflow | 2004-03-28 |
| exploit-db | Ethereal - EIGRP Dissector TLV_IP_INT Long IP Remote Denial of Service | 2004-03-26 |
References
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000835
- http://marc.info/?l=bugtraq&m=108007072215742&w=2
- http://marc.info/?l=bugtraq&m=108058005324316&w=2
- http://marc.info/?l=bugtraq&m=108213710306260&w=2
- http://secunia.com/advisories/11185
- http://security.e-matters.de/advisories/032004.html
- http://security.gentoo.org/glsa/glsa-200403-07.xml
- http://www.debian.org/security/2004/dsa-511
- http://www.ethereal.com/appnotes/enpa-sa-00013.html
- http://www.kb.cert.org/vuls/id/119876
- http://www.kb.cert.org/vuls/id/125156
- http://www.kb.cert.org/vuls/id/433596
- http://www.kb.cert.org/vuls/id/591820
- http://www.kb.cert.org/vuls/id/644886
- http://www.kb.cert.org/vuls/id/659140
- http://www.kb.cert.org/vuls/id/740188
- http://www.kb.cert.org/vuls/id/864884
- http://www.kb.cert.org/vuls/id/931588
- http://www.mandriva.com/security/advisories?name=MDKSA-2004:024
- http://www.osvdb.org/6893
→ the Explorer · watch your stack · NVD