Several buffer overflow vulnerabilities were discovered in ethereal, a network traffic analyzer. These vulnerabilites are described in the ethereal advisory "enpa-sa-00013". Of these, only some parts affect the version of ethereal in Debian woody. Fixed packages are available from
Debian Security Advisory DSA 511-1                                        Matt Zimmerman
May 30th, 2004                
Package        : ethereal
Vulnerability  : buffer overflows
Problem-Type   : remote
Debian-specific: no
CVE Ids        : CAN-2004-0176 

Several buffer overflow vulnerabilities were discovered in ethereal, a
network traffic analyzer.  These vulnerabilites are described in the
ethereal advisory "enpa-sa-00013".  Of these, only some parts of
CAN-2004-0176 affect the version of ethereal in Debian woody.
CAN-2004-0367 and CAN-2004-0365 are not applicable to this version.

For the current stable distribution (woody), these problems have been
fixed in version 0.9.4-1woody7.

For the unstable distribution (sid), these problems have been fixed in
version 0.10.3-1.

We recommend that you update your ethereal package.

Upgrade Instructions
wget url
        will fetch the file for you
dpkg -i file.deb
        will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
        will update the internal database
apt-get upgrade
        will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.

Debian GNU/Linux 3.0 alias woody
  Source archives:
  These files will probably be moved into the stable distribution on
  its next revision.

For apt-get: deb stable/updates main
For dpkg-ftp: dists/stable/updates/main
Mailing list:
Package info: `apt-cache show ' and
Version: GnuPG v1.2.4 (GNU/Linux)


