CVE-2011-3369

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/09/2011
Last modified:
18/05/2012

Description

The add_conversation function in conversations.c in EtherApe before 0.9.12 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an RPC packet, related to the get_rpc function in decode_proto.c.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:juan_toledo:etherape:*:*:*:*:*:*:*:* 0.9.11 (including)
cpe:2.3:a:juan_toledo:etherape:0.0.1:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.0.3:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.0.4:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.0.5:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.0.6:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.0.7:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.0.8:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.1.0:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.1.1:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.1.3:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.1.4:*:*:*:*:*:*:*
cpe:2.3:a:juan_toledo:etherape:0.1.5:*:*:*:*:*:*:*