CVE-2006-3628
ethereal - several
EPSS 5.9%
描述
Multiple format string vulnerabilities in Wireshark (aka Ethereal) 0.10.x to 0.99.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) ANSI MAP, (2) Checkpoint FW-1, (3) MQ, (4) XML, and (5) NTP dissectors.
如何修補 CVE-2006-3628
要修補 CVE-2006-3628,請將受影響套件升級到下列已修補版本。
- Debian/ethereal—升級至 0.10.10-2sarge6 或更新版本
- Debian/wireshark—升級至 0.99.2-1 或更新版本
CVE-2006-3628 正在被利用嗎?
中等 — EPSS 為 5.9%,可持續追蹤但非最高優先。
受影響套件(2)
- from 0, < 0.10.10-2sarge6
- from 0, < 0.99.2-1