Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple integer signedness errors in the BGP dissector in Ethereal 0.9.7 and earlier allow remote attackers to cause a denial of service (infinite loop) via malformed messages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ethereal BGP解析器无限循环远程拒绝服务攻击漏洞
Vulnerability Description
Ethereal是一款免费开放源代码的网络协议分析程序,可使用在Unix和Windows操作系统下。 Ethereal中的BGP解析器在消息长度为负值时处理不正确,远程攻击者利用这个漏洞进行发送恶意包使Ethereal崩溃,导致拒绝服务攻击。 Ethereal中的BGP解析器用于对边界网关协议(BGP)进行解码。由于对消息包长度负正处理不匹配,攻击者可以构建包含长度为负值的的BGP消息包并提交给有Ethereal监听的网络中,可导致Ethereal崩溃。
CVSS Information
N/A
Vulnerability Type
N/A