CVE-2026-9365

A vulnerability has been found in Ettercap up to 0.8.3. The affected element is the function FUNC_DECODER of the file src/dissectors/ec_gg.c of the component GG Dissector. The manipulation of the argument gg leads to heap-based buffer overflow. The attack is possible to be carried out remotely. The complexity of an attack is rather high. The exploitability is described as difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 0.8.4 is sufficient to fix this issue. The identifier of the patch is feeae6fa366e01a3dd9f1857ec6aae847b2ae00c. It is suggested to upgrade the affected component.
Configurations

No configuration.

History

23 Jul 2026, 11:10

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad ha sido encontrada en Ettercap hasta la versión 0.8.3. El elemento afectado es la función FUNC_DECODER del archivo src/dissectors/ec_gg.c del componente GG Dissector. La manipulación del argumento gg conduce a un desbordamiento de búfer basado en montículo. El ataque es posible de ser llevado a cabo remotamente. La complejidad de un ataque es bastante alta. La explotabilidad se describe como difícil. El exploit ha sido divulgado al público y puede ser utilizado. La actualización a la versión 0.8.4 es suficiente para solucionar este problema. El identificador del parche es feeae6fa366e01a3dd9f1857ec6aae847b2ae00c. Se sugiere actualizar el componente afectado.

24 May 2026, 09:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-24 09:16

Updated : 2026-07-23 11:10


NVD link : CVE-2026-9365

Mitre link : CVE-2026-9365

CVE.ORG link : CVE-2026-9365


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-122

Heap-based Buffer Overflow