Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ethereal NTLMSSP解析器堆破坏漏洞
Vulnerability Description
Ethereal是一款免费开放源代码的网络协议分析程序,可使用在Unix和Windows操作系统下。 Ethereal中的NTLMSSP解析器在处理畸形NTLMSSP包时存在漏洞,远程攻击者利用这个漏洞进行基于堆的缓冲区溢出攻击,可能以Ethereal进程权限在系统上执行任意指令。 Ethereal中的NTLMSSP解析器用于解析NTLM协议的机制。攻击者可以构建畸形的NTLMSSP消息包并提交给有Ethereal监听的网络中,可导致Ethereal产生缓冲区溢出,精心构建提交的包可能以Ethereal权
CVSS Information
N/A
Vulnerability Type
N/A