Bug 27758

Summary: ettercap security vulnerability CVE-2017-8366
Product: Mageia Reporter: Zombie Ryushu <zombie_ryushu>
Component: SecurityAssignee: Mageia Bug Squad <bugsquad>
Status: RESOLVED DUPLICATE QA Contact: Sec team <security>
Severity: normal    
Priority: Normal    
Version: Cauldron   
Target Milestone: ---   
Hardware: All   
OS: Linux   
URL: https://nvd.nist.gov/vuln/detail/CVE-2017-8366
Whiteboard:
Source RPM: ettercap-0.8.2-11.mga8.src CVE: CVE-2017-8366
Status comment:

Description Zombie Ryushu 2020-12-06 03:18:48 CET
The strescape function in ec_strings.c in Ettercap 0.8.2 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted filter that is mishandled by etterfilter.

Please update to 0.8.13
Comment 1 Zombie Ryushu 2020-12-06 03:21:24 CET
Sorry, 0.8.3

CVE: (none) => CVE-2017-8366

Comment 2 David Walser 2020-12-06 03:24:01 CET
Already reported and FIXED.

*** This bug has been marked as a duplicate of bug 20772 ***

Resolution: (none) => DUPLICATE
Status: NEW => RESOLVED