Описание
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.
Релиз | Статус | Примечание |
---|---|---|
dapper | released | 1:1.1-4ubuntu0.1 |
devel | released | 1:1.1-4ubuntu4 |
edgy | released | 1:1.1-4ubuntu1.1 |
feisty | released | 1:1.1-4ubuntu2.1 |
upstream | needs-triage |
Показывать по
EPSS
9.3 Critical
CVSS2
Связанные уязвимости
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitr ...
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.
EPSS
9.3 Critical
CVSS2