Logo
vulnerabilityCVE-2026-3606
Name
CVE-2026-3606
Source
NVD ( link)Debian ( link)
Description
A vulnerability has been found in Ettercap 0.8.4-Garofalo. Affected by this vulnerability is the function add_data_segment of the file src/ettercap/utils/etterfilter/ef_output.c of the component etterfilter. The manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
ettercap
Patched

Vulnerability Ratings#


1.9
CVSSv4
3.3
CVSSv31
5.5
CVSSv31
1.7
CVSSv2
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
0.8.4.1
Not Affected
yocto
scarthgap
0.8.3.1
Patched

Resolved with patches#


ettercap (yocto:kirkstone)

#
Title
Author
Resolve
1
Fix heap-out-of-bounds read issue in etterfilter
Alexander Koeppe <alexander@koeppe.rocks>
CVE-2026-3606

ettercap (yocto:scarthgap)

#
Title
Author
Resolve
1
Fix heap-out-of-bounds read issue in etterfilter
Alexander Koeppe <alexander@koeppe.rocks>
CVE-2026-3606