Stack-based buffer overflow in the scanloadhosts function in ec_scan.c in Ettercap 0.7.5.1 and earlier might allow local users to gain privileges via a Trojan horse hosts list containing a long line.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "ettercap-common",
"binary_version": "1:0.8.0-11"
},
{
"binary_name": "ettercap-dbg",
"binary_version": "1:0.8.0-11"
},
{
"binary_name": "ettercap-graphical",
"binary_version": "1:0.8.0-11"
},
{
"binary_name": "ettercap-text-only",
"binary_version": "1:0.8.0-11"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "ettercap-common",
"binary_version": "1:0.8.2-2build1"
},
{
"binary_name": "ettercap-common-dbgsym",
"binary_version": "1:0.8.2-2build1"
},
{
"binary_name": "ettercap-dbg",
"binary_version": "1:0.8.2-2build1"
},
{
"binary_name": "ettercap-graphical",
"binary_version": "1:0.8.2-2build1"
},
{
"binary_name": "ettercap-graphical-dbgsym",
"binary_version": "1:0.8.2-2build1"
},
{
"binary_name": "ettercap-text-only",
"binary_version": "1:0.8.2-2build1"
},
{
"binary_name": "ettercap-text-only-dbgsym",
"binary_version": "1:0.8.2-2build1"
}
]
}