Описание
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | released | 1:1.1-4ubuntu0.1 |
| devel | released | 1:1.1-4ubuntu4 |
| edgy | released | 1:1.1-4ubuntu1.1 |
| feisty | released | 1:1.1-4ubuntu2.1 |
| upstream | needs-triage |
Показывать по
EPSS
9.3 Critical
CVSS2
Связанные уязвимости
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitr ...
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.
EPSS
9.3 Critical
CVSS2