ethereal -- multiple protocol dissectors vulnerabilities


An Ethreal Security Advisories reports:

Our testing program has turned up several more security issues:

Steve Grubb at Red Hat found the following issues:

iDEFENSE found the following issues:


It may be possible to make Ethereal crash, use up available memory, or run arbitrary code by injecting a purposefully malformed packet onto the wire or by convincing someone to read a malformed packet trace file.



