lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20060316185539.A3E524A45@lists.grok.org.uk> Date: Thu Mar 16 19:20:59 2006 From: psirt at cisco.com (psirt@...co.com) Subject: -ADVISORY- * -Thu Mar 16 13:55:34 EST 2006- * Directory Transversal in Ethereal -ADVISORY- * -Thu Mar 16 13:55:34 EST 2006- * Directory Transversal in Ethereal 8=========================D~~~~~~~~ o/ 卍 DESCRIPTION 8=========================D~~~~~~~~ Remote exploitation of a directory traversal vulnerability in Ethereal could allow attackers to overwrite or view arbitrary files with user-supplied contents. 8=========================D~~~~~~~~ 卍 \o HISTORY 8=========================D~~~~~~~~ 2/16/2006 o/ Vendor Notification. 3/16/2006 o/ Public Disclosure. 8=========================D~~~~~~~~ o/ 卍 WORKAROUND 8=========================D~~~~~~~~ There has had been no workarounds regarding the vulnerability indentified. 8=========================D~~~~~~~~ 卍 \o CVE INFORMATION 8=========================D~~~~~~~~ The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2006-316773 to this issue