ngIRCd 0.10.x before 0.10.4 and 0.11.0 before 0.11.0-pre2 allows remote attackers to cause a denial of service (crash) via crafted IRC PART message, which triggers an invalid dereference.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:41
Type | Values Removed | Values Added |
---|---|---|
References | () http://arthur.barton.de/cgi-bin/viewcvs.cgi/ngircd/ngircd/src/ngircd/irc-channel.c?r1=1.40&r2=1.41&diff_format=h - Exploit | |
References | () http://bugs.gentoo.org/show_bug.cgi?id=204834 - | |
References | () http://ngircd.barton.de/doc/ChangeLog - | |
References | () http://secunia.com/advisories/28425 - | |
References | () http://secunia.com/advisories/28673 - | |
References | () http://security.gentoo.org/glsa/glsa-200801-13.xml - | |
References | () http://www.securityfocus.com/bid/27318 - |
Information
Published : 2008-01-16 00:00
Updated : 2025-04-09 00:30
NVD link : CVE-2008-0285
Mitre link : CVE-2008-0285
CVE.ORG link : CVE-2008-0285
JSON object : View
Products Affected
ngircd
- ngircd
CWE