Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The ASN.1 parser in Ethereal 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a certain malformed packet, which causes Ethereal to allocate memory incorrectly, possibly due to zero-length fields.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ethereal ASN.1字符串内存分配拒绝服务攻击漏洞
Vulnerability Description
Ethereal是一款免费开放源代码的网络通信分析工具,由Ethereal项目组开发和维护。 Ethereal在处理ASN.1信息时存在漏洞,可导致攻击者进行拒绝服务攻击。 攻击者可以使用非法数据传递给Ethereal中ASN.1字符解析函数,可导致不正确的分配内存,使程序崩溃。其中SNMP、LDAP、COPS和Kerberos都用到此解析函数。
CVSS Information
N/A
Vulnerability Type
N/A