PT-2026-39575 · Ettercap · Ettercap
Dapickle
·
Published
2026-05-11
·
Updated
2026-05-11
·
CVE-2026-8275
CVSS v3.1
3.7
Low
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
bettercap versions prior to 2.41.6
Description
An integer coercion error exists in the zerogod IPP Service component within the
ippReadChunkedBody() function of the modules/zerogod/zerogod ipp primitives.go file. This issue allows a remote attacker to trigger the error through specific manipulation, although the attack is characterized by high complexity and difficult exploitation.Recommendations
Deploy patch 3731d5576cffae9eefe3721cd46a40933304129f.
As a temporary workaround, restrict access to the zerogod IPP Service component to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ettercap