漏洞信息详情
Ethereal GTP Protocol Dissector拒绝服务漏洞
漏洞简介
GTP dissector for Ethereal 0.9.1至0.10.13版本存在未明漏洞,远程攻击者可以通过未知攻击向量来发起拒绝服务攻击(无限循环)。
漏洞公告
目前厂商已经发布了升级补丁以修复此安全问题,补丁获取链接:
Ethereal Group Ethereal 0.10 .10
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.1
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.11
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.13
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.2
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.3
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.4
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.5
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.6
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.7
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.8
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.10.9
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.9.1
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.9.10
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.9.11
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.9.12
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.9.13
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
Ethereal Group Ethereal 0.9.15
Ethereal Group Ethereal 0.10.14
http://www.ethereal.com/download.html
参考网址
来源: VUPEN
名称: ADV-2005-3095
链接:http://www.frsirt.com/english/advisories/2005/3095
来源: SECTRACK
名称: 1015414
链接:http://securitytracker.com/id?1015414
来源: SECUNIA
名称: 18229
链接:http://secunia.com/advisories/18229
来源: XF
名称: ethereal-gtp-dissector-dos(23849)
链接:http://xforce.iss.net/xforce/xfdb/23849
来源: BID
名称: 16076
链接:http://www.securityfocus.com/bid/16076
来源: REDHAT
名称: RHSA-2006:0156
链接:http://www.redhat.com/support/errata/RHSA-2006-0156.html
来源: OSVDB
名称: 22092
链接:http://www.osvdb.org/22092
来源: www.ethereal.com
链接:http://www.ethereal.com/appnotes/enpa-sa-00022.html
来源: SREASON
名称: 304
链接:http://securityreason.com/securityalert/304
来源: SECUNIA
名称: 19230
链接:http://secunia.com/advisories/19230
来源: SECUNIA
名称: 19012
链接:http://secunia.com/advisories/19012
来源: SECUNIA
名称: 18911
链接:http://secunia.com/advisories/18911
来源: SECUNIA
名称: 18426
链接:http://secunia.com/advisories/18426
来源: SUSE
名称: SUSE-SR:2006:004
链接:http://lists.suse.de/archive/suse-security-announce/2006-Feb/0008.html
来源: SGI
名称: 20060201-01-U
链接:ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U
受影响实体
- Ethereal_group Ethereal:0.10.12<!--2000-1-1-->
- Ethereal_group Ethereal:0.10.13<!--2000-1-1-->
- Ethereal_group Ethereal:0.10.11<!--2000-1-1-->
- Ethereal_group Ethereal:0.10.10<!--2000-1-1-->
- Ethereal_group Ethereal:0.10.9<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...