SEPTEMBER 21, 2026
Live Feed
Back to database
Case File

CVE-2003-0356

CRITICAL · CVSS 9.8 EPSS 9.57%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2003-06-09 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2003-0356
Severity
CRITICAL
CVSS
9.8
EPSS
9.57%

Original NVD Description

Multiple off-by-one vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) AIM, (2) GIOP Gryphon, (3) OSPF, (4) PPTP, (5) Quake, (6) Quake2, (7) Quake3, (8) Rsync, (9) SMB, (10) SMPP, and (11) TSP dissectors, which do not properly use the tvb_get_nstringz and tvb_get_nstringz0 functions.