Back to Database
Status published
Medium
CVE-2014-9380
The dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allows remote...
Vulnerability Description
The dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allows remote attackers to cause a denial of service (out-of-bounds read) via a packet containing only a CVS_LOGIN signature.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-9380
Credits & Attribution
No credits recorded in the NVD database.
References
More from ettercap-project
View All →CVE-2017-6430
The compile_tree function in ef_compiler.c in the Etterfilter utility in...
Medium
5.5
CVE-2014-9381
Integer signedness error in the dissector_cvs function in dissectors/ec_cvs.c in...
Medium
5
CVE-2014-9379
The radius_get_attribute function in dissectors/ec_radius.c in Ettercap 0.8.1 performs an...
High
7.5
CVE-2014-9378
Ettercap 0.8.1 does not validate certain return values, which allows...
High
7.5
CVE-2014-9377
Heap-based buffer overflow in the nbns_spoof function in plug-ins/nbns_spoof/nbns_spoof.c in...
High
7.5
Affected Vendor
ettercap-project
View all reports →Affected Software
ettercap
Vulnerable Versions:
0.8.1
Timeline
Official Publish:
December 19th, 2014
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.