Package: ettercap Severity: grave Tags: security Hi!
There is a buffer overflow in curses_msg() in ec_curses.c, which can be exploited by remote attackers to execute arbitrary code. Details at http://secunia.com/advisories/15535 http://ettercap.sourceforge.net/history.php This is CAN-2005-1796: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-1796 Please mention the CAN number in the changelog to allow easier tracking of this vulnerability. Thanks, Martin -- Martin Pitt http://www.piware.de Ubuntu Developer http://www.ubuntulinux.org Debian Developer http://www.debian.org
signature.asc
Description: Digital signature