PatchSiren

Ettercap CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW Ettercap CVE published 2026-05-24

CVE-2026-9365

A heap-based buffer overflow vulnerability exists in Ettercap versions up to and including 0.8.3, specifically within the GG (Gadu-Gadu) protocol dissector. The flaw resides in the FUNC_DECODER function in src/dissectors/ec_gg.c, where improper handling of the 'gg' argument can lead to memory corruption. While the attack vector is network-accessible, the high attack complexity and difficult exploitability [truncated]