Описание
Multiple buffer overflows in Melange Chat server 2.02 allow remote or local attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a long argument in the /yell command, (2) long lines in the /etc/melange.conf configuration file, (3) long file names, or possibly other attacks.
Ссылки
- ExploitVendor Advisory
- Exploit
- PatchVendor Advisory
- Vendor Advisory
- ExploitVendor Advisory
- Exploit
- PatchVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:melange:melange_chat_system:2.0.2_beta_2:*:*:*:*:*:*:*
EPSS
Процентиль: 81%
0.01561
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Multiple buffer overflows in Melange Chat server 2.02 allow remote or local attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a long argument in the /yell command, (2) long lines in the /etc/melange.conf configuration file, (3) long file names, or possibly other attacks.
EPSS
Процентиль: 81%
0.01561
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other