UBUNTU-CVE-2026-8275

Source
https://ubuntu.com/security/CVE-2026-8275
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-8275.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2026-8275
Upstream
  • CVE-2026-8275
Published
2026-05-11T06:16:00Z
Modified
2026-05-26T19:29:32.031400156Z
Severity
  • 3.7 (Low) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
  • 2.9 (Low) CVSS_V4 - CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

A vulnerability was detected in bettercap up to 2.41.5. Affected by this vulnerability is the function ippReadChunkedBody of the file modules/zerogod/zerogodippprimitives.go of the component zerogod IPP Service. Performing a manipulation results in integer coercion error. The attack can be initiated remotely. The attack is considered to have high complexity. The exploitation appears to be difficult. The exploit is now public and may be used. The patch is named 3731d5576cffae9eefe3721cd46a40933304129f. To fix this issue, it is recommended to deploy a patch.

References

Affected packages

Ubuntu:Pro:22.04:LTS / bettercap

Package

Name
bettercap
Purl
pkg:deb/ubuntu/bettercap?arch=source&distro=esm-apps%2Fjammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.32.0-1
2.32.0-1ubuntu0.22.04.1
2.32.0-1ubuntu0.22.04.2
2.32.0-1ubuntu0.22.04.3
2.32.0-1ubuntu0.22.04.3+esm1
2.32.0-1ubuntu0.22.04.3+esm2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.32.0-1ubuntu0.22.04.3+esm2",
            "binary_name": "bettercap"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-8275.json"

Ubuntu:Pro:24.04:LTS / bettercap

Package

Name
bettercap
Purl
pkg:deb/ubuntu/bettercap?arch=source&distro=esm-apps%2Fnoble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.32.0-2build1
2.32.0-2build3
2.32.0-2ubuntu0.24.04.1
2.32.0-2ubuntu0.24.04.2
2.32.0-2ubuntu0.24.04.2+esm1
2.32.0-2ubuntu0.24.04.3
2.32.0-2ubuntu0.24.04.3+esm1
2.32.0-2ubuntu0.24.04.3+esm2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.32.0-2ubuntu0.24.04.3+esm2",
            "binary_name": "bettercap"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-8275.json"

Ubuntu:25.10 / bettercap

Package

Name
bettercap
Purl
pkg:deb/ubuntu/bettercap?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.33.0-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.33.0-1",
            "binary_name": "bettercap"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-8275.json"

Ubuntu:26.04:LTS / bettercap

Package

Name
bettercap
Purl
pkg:deb/ubuntu/bettercap?arch=source&distro=resolute

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.33.0-1
2.33.0-1build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.33.0-1build1",
            "binary_name": "bettercap"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-8275.json"