CVE-2014-9377: Buffer Overflow
Published Dec 19, 2014
·Updated
Heap-based buffer overflow in the nbnsspoof function in plug-ins/nbnsspoof/nbnsspoof.c in Ettercap 0.8.1 allows remote attackers to cause a denial of service or possibly execute arbitrary code via a large netbios packet.
Affected Software
1 affected component
Ettercap-project Ettercap=0.8.1
Event History
Dec 19, 2014
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-9377?
CVE-2014-9377 is categorized as a high severity vulnerability due to its potential for remote code execution and denial of service.
2
How do I fix CVE-2014-9377?
To mitigate CVE-2014-9377, users should upgrade to a patched version of Ettercap that addresses this buffer overflow issue.
3
What types of attacks can exploit CVE-2014-9377?
CVE-2014-9377 can be exploited for denial of service attacks or to execute arbitrary code on the affected system.
4
Which software versions are affected by CVE-2014-9377?
CVE-2014-9377 specifically affects Ettercap version 0.8.1.
5
Is CVE-2014-9377 a local or remote vulnerability?
CVE-2014-9377 is considered a remote vulnerability as it can be exploited by attackers over the network.