CVE-2005-1461

Ethereal < 0.10.11 - Multiple Buffer Overflows in Dissectors

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-1461. PoCs published by Team W00dp3ck3r.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Ethereal's SIP dissector (CVE-2005-1461). It crafts a malicious SIP packet to overwrite the return address and execute shellcode that adds a user 'su' with password 'su' on the victim host.

Description

Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Presentation dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Team W00dp3ck3r · cremotelinux
https://www.exploit-db.com/exploits/1021

This exploit targets a buffer overflow vulnerability in Ethereal's SIP dissector (CVE-2005-1461). It crafts a malicious SIP packet to overwrite the return address and execute shellcode that adds a user 'su' with password 'su' on the victim host.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Ethereal 0.10.0 to 0.10.10
No auth needed
Prerequisites: Victim must run Ethereal as root · Network access to UDP port 5060
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
URL Repurposed x_refsource_confirm
http://www.ethereal.com/appnotes/enpa-sa-00019.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9853
URL Repurposed x_refsource_confirm
http://www.ethereal.com/news/item_20050504_01.html
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2005-427.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13504
Vendor Advisory vendor-advisory x_refsource_conectiva
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963

Scores

EPSS 0.0712
EPSS Percentile 93.4%

Details

Status published
Products (35)
ethereal_group/ethereal 0.8
ethereal_group/ethereal 0.8.13
ethereal_group/ethereal 0.8.14
ethereal_group/ethereal 0.8.15
ethereal_group/ethereal 0.8.18
ethereal_group/ethereal 0.8.19
ethereal_group/ethereal 0.9
ethereal_group/ethereal 0.9.1
ethereal_group/ethereal 0.9.2
ethereal_group/ethereal 0.9.3
... and 25 more
Published May 05, 2005
Tracked Since Feb 18, 2026