VDB
CVE-2005-1463
CVE-2005-1463
PUBLISHED
CVSS 7.5 HIGH
Multiple format string vulnerabilities in the (1) DHCP and (2) ANSI A dissectors in Ethereal before 0.10.11 may allow remote attackers to execute arbitrary code.
EPSS 3.47% · 88.2th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
3.47%
88.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | * |
| ethereal_group | ethereal | 0.8.13, 0.8.14, 0.8.15 |
Timeline
- May 5, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Feb 13, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
References
- 13504 vdb
- RHSA-2005:427 vendor-advisory
- CLSA-2005:963 vendor-advisory
- http://www.ethereal.com/news/item_20050504_01.html url
- https://nvd.nist.gov/vuln/detail/CVE-2005-1463 advisory
- http://www.ethereal.com/appnotes/enpa-sa-00019.html patch
- http://www.redhat.com/archives/fedora-legacy-announce/2006-January/msg00003.html technical
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10713 technical