Candidate: CVE-2017-6430 PublicDate: 2017-03-15 15:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6430 https://github.com/Ettercap/ettercap/issues/782 Description: The compile_tree function in ef_compiler.c in the Etterfilter utility in Ettercap 0.8.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted filter. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Raj Ullas Assigned-to: CVSS: nvd: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H [5.5 MEDIUM] Patches_ettercap: other: https://github.com/LocutusOfBorg/ettercap/commit/626dc56686f15f2dda13c48f78c2a666cb6d8506 upstream_ettercap: released precise_ettercap: ignored (reached end-of-life) precise/esm_ettercap: DNE (precise was needed) trusty_ettercap: released (1:0.8.0-11ubuntu0.3) trusty/esm_ettercap: DNE (trusty was released [1:0.8.0-11ubuntu0.3]) vivid/stable-phone-overlay_ettercap: DNE vivid/ubuntu-core_ettercap: DNE xenial_ettercap: released (1:0.8.2-2ubuntu1.16.04.1) yakkety_ettercap: released (1:0.8.2-2ubuntu1.16.10.1) zesty_ettercap: released (1:0.8.2-4ubuntu1.17.04.1) devel_ettercap: not-affected (1:0.8.2-6)