Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 521
Alerts This Week
Warning Icon 1 521

Gentoo: GLSA-200506-07 High: Ettercap Format String Remote Code Execution

gentoo
Calendar Grey June 11, 2005
Scroller Gentoo
A critical flaw in Ettercap regarding format strings enables remote code execution. Users are advised to update their software immediately.
A format string vulnerability in Ettercap could allow a remote attacker to execute arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200506-07 https://security.gentoo.org/ Severity: High Title: Ettercap: Format string vulnerability Date: June 11, 2005 Bugs: #94474 ID: 200506-07

Synopsis ======= A format string vulnerability in Ettercap could allow a remote attacker to execute arbitrary code.
Background ========= Ettercap is a suite of tools for content filtering, sniffing and man in the middle attacks on a LAN.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-analyzer/ettercap < 0.7.3 >= 0.7.3
========== The curses_msg function of Ettercap's Ncurses-based user interface insecurely implements formatted printing.
Impact ===== A remote attacker co...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround