Multiple buffer overflows in ircII 20020912 allows remote malicious IRC servers to cause a denial of service (crash) and possibly execute arbitrary code via responses that are not properly fed to the my_strcat function by (1) ctcp_buffer, (2) cannot_join_channel, (3) status_make_printable for Statusbar drawing, (4) create_server_list, and possibly other functions.
References
Configurations
History
20 Nov 2024, 23:44
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=104766521328322&w=2 - | |
References | () http://marc.info/?l=bugtraq&m=104808915402926&w=2 - | |
References | () http://www.debian.org/security/2003/dsa-291 - Patch, Vendor Advisory | |
References | () http://www.debian.org/security/2003/dsa-298 - | |
References | () http://www.securityfocus.com/bid/7098 - |
Information
Published : 2003-06-09 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2003-0323
Mitre link : CVE-2003-0323
CVE.ORG link : CVE-2003-0323
JSON object : View
Products Affected
michael_sandrof
- ircii
CWE