peter bassill · operator
$ cve CVE-2005-1461 JSON

CVE-2005-1461 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 7.1% (pctl 94)

Patch early

A public exploit exists.

Description

Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS7.12% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploityes
Published2005-05-05
Last modified2026-06-16

Affected (1)

VendorProduct
ethereal groupethereal

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD