CVE-2014-6396: Ettercap-Project Ettercap

High severity, CVSS 7.5. EPSS: 3.6% chance of exploitation in the next 30 days.

The dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted password length, which triggers a 0 character to be written to an arbitrary memory location.

Affected products

Published 2014-12-19. Last modified 2026-06-17.