CVE-2010-3843

The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ownership of this file. When parsing this file for settings in gtkui_conf_read() (src/interfacesgtk/ec_gtk_conf.c), an unchecked sscanf() call allows a maliciously placed settings file to overflow a statically-sized buffer on the stack.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:ettercap-project:ettercap:0.7.3:*:*:*:*:*:*:*

Information

Published : 2021-05-28 06:15

Updated : 2021-07-08 04:15


NVD link : CVE-2010-3843

Mitre link : CVE-2010-3843


JSON object : View

CWE
CWE-787

Out-of-bounds Write

Advertisement

dedicated server usa

Products Affected

ettercap-project

  • ettercap