← Vulnerability feed

Vulnerability record · CVE-2010-3843 · published 28 May 2021

CVE-2010-3843: Ettercap-project ettercap out-of-bounds write vulnerability

Ettercap Project · Ettercap

The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ownership of this file. When parsing this file for settings in gtkui_conf_read() (src/interfacesgtk/ec_gtk_conf.c), an unchecked sscanf() call allows a maliciously placed settings file to overflow a statically-sized buffer on the stack.

7.8 CVSS 3.1 High EPSS 0.31% · top 78.3% CWE-787 · Out-of-bounds write
7.8CVSS 3.1 base score, v2 4.6
0.31%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References
16 Jun 2026Last modified by NVD

Description

The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ownership of this file. When parsing this file for settings in gtkui_conf_read() (src/interfacesgtk/ec_gtk_conf.c), an unchecked sscanf() call allows a maliciously placed settings file to overflow a statically-sized buffer on the stack.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2010-3843 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2010-3844Ettercap-project ettercap classic buffer overflow vulnerabilityAn unchecked sscanf() call in ettercap before 0.7.5 allows an insecure temporary settings file to overflow a static-sized buffer on the stack.EPSS 1.4%7.5CVE-2014-9379Ettercap-project ettercap memory buffer overflow vulnerabilityThe radius_get_attribute function in dissectors/ec_radius.c in Ettercap 0.8.1 performs an incorrect cast, which allows remote attackers to cause a de…EPSS 4.0%7.5CVE-2014-9378Ettercap-project ettercap improper input validation vulnerabilityEttercap 0.8.1 does not validate certain return values, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitr…EPSS 3.9%7.5CVE-2014-9376Ettercap-project ettercap vulnerabilityInteger underflow in Ettercap 0.8.1 allows remote attackers to cause a denial of service (out-of-bounds write) and possibly execute arbitrary code vi…EPSS 4.1%7.5CVE-2014-9377Ettercap-project ettercap memory buffer overflow vulnerabilityHeap-based buffer overflow in the nbns_spoof function in plug-ins/nbns_spoof/nbns_spoof.c in Ettercap 0.8.1 allows remote attackers to cause a denial…EPSS 4.0%7.5CVE-2014-6396Ettercap-project ettercap memory buffer overflow vulnerabilityThe dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remote attackers to cause a denial of service and pos…EPSS 3.6%7.5CVE-2014-6395Ettercap-project ettercap memory buffer overflow vulnerabilityHeap-based buffer overflow in the dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remote attackers to cau…EPSS 13%5.5CVE-2017-6430Ettercap-project ettercap out-of-bounds read vulnerabilityThe compile_tree function in ef_compiler.c in the Etterfilter utility in Ettercap 0.8.2 and earlier allows remote attackers to cause a denial of serv…EPSS 2.0%

Source: NIST National Vulnerability Database (record CVE-2010-3843), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.