Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
4.8

Ettercap 0.8.4-Garofalo: Data Exposure via Out-of-Bounds Read

CVE-2026-3606
Summary

A security issue has been discovered in Ettercap 0.8.4-Garofalo. If exploited, an attacker with local access could potentially access sensitive data they shouldn't have. We recommend keeping your software up to date to prevent this issue.

Original title
A vulnerability has been found in Ettercap 0.8.4-Garofalo. Affected by this vulnerability is the function add_data_segment of the file src/ettercap/utils/etterfilter/ef_output.c of the component et...
Original description
A vulnerability has been found in Ettercap 0.8.4-Garofalo. Affected by this vulnerability is the function add_data_segment of the file src/ettercap/utils/etterfilter/ef_output.c of the component etterfilter. The manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
nvd CVSS2.0 1.7
nvd CVSS3.1 3.3
nvd CVSS4.0 4.8
Vulnerability type
CWE-119 Buffer Overflow
CWE-125 Out-of-bounds Read
Published: 5 Mar 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026