7.5

CVE-2005-2367

Format string vulnerability in the proto_item_set_text function in Ethereal 0.9.4 through 0.10.11, as used in multiple dissectors, allows remote attackers to write to arbitrary memory locations and gain privileges via a crafted AFP packet.

Data is provided by the National Vulnerability Database (NVD)
Ethereal GroupEthereal Version0.9.4
Ethereal GroupEthereal Version0.9.5
Ethereal GroupEthereal Version0.9.6
Ethereal GroupEthereal Version0.9.7
Ethereal GroupEthereal Version0.9.8
Ethereal GroupEthereal Version0.9.9
Ethereal GroupEthereal Version0.9.10
Ethereal GroupEthereal Version0.9.11
Ethereal GroupEthereal Version0.9.12
Ethereal GroupEthereal Version0.9.13
Ethereal GroupEthereal Version0.9.14
Ethereal GroupEthereal Version0.9.15
Ethereal GroupEthereal Version0.9.16
Ethereal GroupEthereal Version0.10.0
Ethereal GroupEthereal Version0.10.1
Ethereal GroupEthereal Version0.10.2
Ethereal GroupEthereal Version0.10.3
Ethereal GroupEthereal Version0.10.4
Ethereal GroupEthereal Version0.10.5
Ethereal GroupEthereal Version0.10.6
Ethereal GroupEthereal Version0.10.7
Ethereal GroupEthereal Version0.10.8
Ethereal GroupEthereal Version0.10.9
Ethereal GroupEthereal Version0.10.10
Ethereal GroupEthereal Version0.10.11
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 19.35% 0.951
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P