Searching sniffer software vulnerabilities


tcpdump, Ethereal, and other sniffer packages a


tcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS packets in which a jump offset refers to itself, which causes tcpdump to enter an infinite loop while decompressing the packet.


NAI Sniffer Agent uses base64 encoding for auth


NAI Sniffer Agent uses base64 encoding for authentication, which allows attackers to sniff the network and easily decrypt usernames and passwords.


NAI Sniffer Agent allows remote attackers to ga


NAI Sniffer Agent allows remote attackers to gain privileges on the agent by sniffing the initial UDP authentication packets and spoofing commands.


NAI Sniffer Agent allows remote attackers to ca


NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login requests.


Buffer overflow in Seunghyun Seo's MSN666 MSN S


Buffer overflow in Seunghyun Seo's MSN666 MSN Sniffer 1.0 and 1.0.1 allows remote attackers to execute arbitrary code via a long MSN packet.


Multiple buffer overflows in Cain & Abel before


Multiple buffer overflows in Cain & Abel before 2.67 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via (1) an IKE packet with a large ID field that is not properly handled by the PSK sniffer filter, (2) the HTTP sniffer filter, or the (3) POP3, (4) SMTP, (5) IMAP, (6) NNTP, or (7) TDS sniffer filters.


Unspecified vulnerability in Serial line sniffe


Unspecified vulnerability in Serial line sniffer (aka slsnif) 0.4.4 allows local users to gain privileges via a long value of the HOME environment variable, possibly because of a buffer overflow.


Multiple buffer overflows in Ethereal 0.10.x up


Multiple buffer overflows in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the (1) ALCAP dissector, (2) Network Instruments file code, or (3) NetXray/Windows Sniffer file code.


Multiple unspecified vulnerabilities in Etherea


Multiple unspecified vulnerabilities in Ethereal 0.8.x up to 0.10.14 allow remote attackers to cause a denial of service (crash from null dereference) via the (1) Sniffer capture or (2) SMB PIPE dissector.


Software vulnerabilities results 1 to 10 of 10     
Page: 1