Описание
Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 1:7.2.2.dfsg.2-6ubuntu3 |
| bionic | released | 1:7.2.2.dfsg.2-6ubuntu3 |
| cosmic | released | 1:7.2.2.dfsg.2-6ubuntu3 |
| dapper | ignored | end of life |
| devel | released | 1:7.2.2.dfsg.2-6ubuntu3 |
| esm-apps/bionic | released | 1:7.2.2.dfsg.2-6ubuntu3 |
| esm-apps/xenial | released | 1:7.2.2.dfsg.2-6ubuntu3 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1:7.2.2.dfsg.2-6ubuntu3]] |
| hardy | released | 1:7.2.2.dfsg.2-3+etch1build0.8.04.1 |
| intrepid | released | 1:7.2.2.dfsg.2-4+lenny1build0.8.10.1 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | DNE | |
| bionic | DNE | |
| cosmic | DNE | |
| dapper | DNE | |
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [3.0.8.dfsg-1]] |
| hardy | ignored | end of life |
| intrepid | ignored | end of life |
| jaunty | ignored | end of life |
| karmic | ignored | end of life |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | DNE | |
| bionic | DNE | |
| cosmic | DNE | |
| dapper | DNE | |
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| hardy | ignored | end of life |
| intrepid | ignored | end of life |
| jaunty | ignored | end of life |
| karmic | ignored | end of life |
Показывать по
EPSS
6.8 Medium
CVSS2
Связанные уязвимости
Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
Integer underflow in the clean_string function in irc_string.c in (1) ...
Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
EPSS
6.8 Medium
CVSS2