CVE-2004-0633
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 18%
from disclosure to weapon28 days
Published on NVDJul 8
1st PoC+28d
exploitation probability
18%top 3% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abort) via an integer overflow.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/24259⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=127381http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000916http://secunia.com/advisories/12024http://securitytracker.com/id?1010655https://exchange.xforce.ibmcloud.com/vulnerabilities/16630https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9931http://www.ethereal.com/appnotes/enpa-sa-00015.htmlhttp://www.gentoo.org/security/en/glsa/glsa-200407-08.xmlhttp://www.kb.cert.org/vuls/id/829422http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:067http://www.redhat.com/archives/fedora-announce-list/2004-July/msg00013.htmlhttp://www.redhat.com/archives/fedora-announce-list/2004-July/msg00014.html