← Vulnerability feed

Vulnerability record · CVE-2004-0504 · published 18 August 2004

CVE-2004-0504: Ethereal group ethereal vulnerability

Ethereal Group · Ethereal

Ethereal 0.10.3 allows remote attackers to cause a denial of service (crash) via certain SIP messages between Hotsip servers and clients.

5.0 CVSS 2.0 Medium EPSS 2.7% · top 14.4%
5.0CVSS 2.0 base score
2.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
34References
16 Jun 2026Last modified by NVD

Description

Ethereal 0.10.3 allows remote attackers to cause a denial of service (crash) via certain SIP messages between Hotsip servers and clients.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
ftp://patches.sgi.com/support/free/security/advisories/20040604-01-U.asc
ftp://patches.sgi.com/support/free/security/advisories/20040605-01-U.asc
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000916
http://secunia.com/advisories/11608
http://secunia.com/advisories/11776
http://secunia.com/advisories/11836
http://security.gentoo.org/glsa/glsa-200406-01.xml Vendor Advisory
http://securitytracker.com/id?1010158
http://www.ciac.org/ciac/bulletins/o-150.shtml
http://www.ethereal.com/appnotes/enpa-sa-00014.html URL Repurposed
http://www.ethereal.com/lists/ethereal-users/200405/msg00018.html URL Repurposed
http://www.osvdb.org/6131
http://www.redhat.com/support/errata/RHSA-2004-234.html PatchVendor Advisory
http://www.securityfocus.com/bid/10347 PatchVendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/16148
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9769
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A982
ftp://patches.sgi.com/support/free/security/advisories/20040604-01-U.asc
ftp://patches.sgi.com/support/free/security/advisories/20040605-01-U.asc
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000916
http://secunia.com/advisories/11608
http://secunia.com/advisories/11776
http://secunia.com/advisories/11836
http://security.gentoo.org/glsa/glsa-200406-01.xml Vendor Advisory
http://securitytracker.com/id?1010158
http://www.ciac.org/ciac/bulletins/o-150.shtml
http://www.ethereal.com/appnotes/enpa-sa-00014.html URL Repurposed
http://www.ethereal.com/lists/ethereal-users/200405/msg00018.html URL Repurposed
http://www.osvdb.org/6131
http://www.redhat.com/support/errata/RHSA-2004-234.html PatchVendor Advisory
http://www.securityfocus.com/bid/10347 PatchVendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/16148
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9769
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A982

Track CVE-2004-0504 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2006-3632Ethereal group ethereal memory buffer overflow vulnerabilityBuffer overflow in Wireshark (aka Ethereal) 0.8.16 to 0.99.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code…EPSS 7.5%10.0CVE-2006-3628Ethereal group ethereal vulnerabilityMultiple format string vulnerabilities in Wireshark (aka Ethereal) 0.10.x to 0.99.0 allow remote attackers to cause a denial of service and possibly …EPSS 6.0%10.0CVE-2006-1932Ethereal group ethereal vulnerabilityOff-by-one error in the OID printing routine in Ethereal 0.10.x up to 0.10.14 has unknown impact and remote attack vectors.EPSS 2.6%10.0CVE-2005-3625Easy software products cups vulnerabilityXpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of servic…EPSS 3.8%10.0CVE-2005-3184Ethereal group ethereal vulnerabilityBuffer overflow vulnerability in the unicode_to_bytes in the Service Location Protocol (srvloc) dissector (packet-srvloc.c) in Ethereal allows remote…EPSS 7.6%10.0CVE-2004-0226Midnight commander vulnerabilityMultiple buffer overflows in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.EPSS 3.9%10.0CVE-2004-0523Mit kerberos vulnerabilityMultiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as …EPSS 12%10.0CVE-2004-0234Clearswift mailsweeper memory buffer overflow vulnerabilityMultiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewall, allow…EPSS 10%

Source: NIST National Vulnerability Database (record CVE-2004-0504), CISA KEV, FIRST EPSS (scores of 2026-10-07). This page is refreshed as NVD updates the record.