漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Ettercap GG Dissector ec_gg.c FUNC_DECODER heap-based overflow
Vulnerability Description
A vulnerability has been found in Ettercap up to 0.8.3. The affected element is the function FUNC_DECODER of the file src/dissectors/ec_gg.c of the component GG Dissector. The manipulation of the argument gg leads to heap-based buffer overflow. The attack is possible to be carried out remotely. The complexity of an attack is rather high. The exploitability is described as difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 0.8.4 is sufficient to fix this issue. The identifier of the patch is feeae6fa366e01a3dd9f1857ec6aae847b2ae00c. It is suggested to upgrade the affected component.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
堆缓冲区溢出
Vulnerability Title
Ettercap 安全漏洞
Vulnerability Description
Ettercap是Ettercap开源的一个针对中间人攻击的综合套件。它具有嗅探实时连接、动态内容过滤的功能。 Ettercap 0.8.3及之前版本存在安全漏洞,该漏洞源于组件GG Dissector中文件src/dissectors/ec_gg.c的函数FUNC_DECODER对参数gg操作不当,可能导致堆缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A