Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-322p-rrj6-j44g

Опубликовано: 11 мая 2026
Источник: github
Github: Прошло ревью
CVSS4: 2.9
CVSS3: 3.7

Описание

bettercap Has an Integer Coercion Error in the ippReadChunkedBody Function

A vulnerability was detected in bettercap up to 2.41.5. Affected by this vulnerability is the function ippReadChunkedBody of the file modules/zerogod/zerogod_ipp_primitives.go of the component zerogod IPP Service. Performing a manipulation results in integer coercion error. The attack can be initiated remotely. The attack is considered to have high complexity. The exploitation appears to be difficult. The exploit is now public and may be used. The patch is named 3731d5576cffae9eefe3721cd46a40933304129f. To fix this issue, it is recommended to deploy a patch.

Пакеты

Наименование

github.com/bettercap/bettercap/v2

go
Затронутые версииВерсия исправления

< 2.41.7

2.41.7

EPSS

Процентиль: 41%
0.00523
Низкий

2.9 Low

CVSS4

3.7 Low

CVSS3

Дефекты

CWE-190
CWE-192

Связанные уязвимости

CVSS3: 3.7
ubuntu
3 месяца назад

A vulnerability was detected in bettercap up to 2.41.5. Affected by this vulnerability is the function ippReadChunkedBody of the file modules/zerogod/zerogod_ipp_primitives.go of the component zerogod IPP Service. Performing a manipulation results in integer coercion error. The attack can be initiated remotely. The attack is considered to have high complexity. The exploitation appears to be difficult. The exploit is now public and may be used. The patch is named 3731d5576cffae9eefe3721cd46a40933304129f. To fix this issue, it is recommended to deploy a patch.

CVSS3: 3.7
nvd
3 месяца назад

A vulnerability was detected in bettercap up to 2.41.5. Affected by this vulnerability is the function ippReadChunkedBody of the file modules/zerogod/zerogod_ipp_primitives.go of the component zerogod IPP Service. Performing a manipulation results in integer coercion error. The attack can be initiated remotely. The attack is considered to have high complexity. The exploitation appears to be difficult. The exploit is now public and may be used. The patch is named 3731d5576cffae9eefe3721cd46a40933304129f. To fix this issue, it is recommended to deploy a patch.

CVSS3: 3.7
debian
3 месяца назад

A vulnerability was detected in bettercap up to 2.41.5. Affected by th ...

EPSS

Процентиль: 41%
0.00523
Низкий

2.9 Low

CVSS4

3.7 Low

CVSS3

Дефекты

CWE-190
CWE-192