Package: ettercap
Severity: grave
Tags: security

Hi!

There is a buffer overflow in curses_msg() in ec_curses.c, which can
be exploited by remote attackers to execute arbitrary code. Details at

  http://secunia.com/advisories/15535
  http://ettercap.sourceforge.net/history.php

This is CAN-2005-1796:

  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-1796

Please mention the CAN number in the changelog to allow easier
tracking of this vulnerability.

Thanks,

Martin

-- 
Martin Pitt              http://www.piware.de
Ubuntu Developer   http://www.ubuntulinux.org
Debian Developer        http://www.debian.org

Attachment: signature.asc
Description: Digital signature

Reply via email to