Vulnerability Description
Multiple unspecified vulnerabilities in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (crash from null dereference) via (1) multiple vectors in H.248, and the (2) X.509if, (3) SRVLOC, (4) H.245, (5) AIM, and (6) general packet dissectors; and (7) the statistics counter.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ethereal Group | Ethereal | 0.10 |
References
- ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.asc
- http://lists.suse.com/archive/suse-security-announce/2006-May/0004.html
- http://secunia.com/advisories/19769Vendor Advisory
- http://secunia.com/advisories/19805Vendor Advisory
- http://secunia.com/advisories/19828Vendor Advisory
- http://secunia.com/advisories/19839Vendor Advisory
- http://secunia.com/advisories/19958Vendor Advisory
- http://secunia.com/advisories/19962Vendor Advisory
- http://secunia.com/advisories/20117Vendor Advisory
- http://secunia.com/advisories/20210Vendor Advisory
- http://secunia.com/advisories/20944Vendor Advisory
- http://securitytracker.com/id?1015985
- http://support.avaya.com/elmodocs2/security/ASA-2006-128.htm
- http://www.debian.org/security/2006/dsa-1049
- http://www.ethereal.com/appnotes/enpa-sa-00023.htmlPatchURL Repurposed
FAQ
What is CVE-2006-1937?
CVE-2006-1937 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Multiple unspecified vulnerabilities in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (crash from null dereference) via (1) multiple vectors in H.248, and the (2) X...
How severe is CVE-2006-1937?
CVE-2006-1937 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-1937?
Check the references section above for vendor advisories and patch information. Affected products include: Ethereal Group Ethereal.