LWN.net Logo

ircd-hybrid/ircd-ratbox: multiple vulnerabilities

Package(s):ircd-hybrid/ircd-ratbox CVE #(s):CVE-2009-4016 CVE-2010-0300
Created:January 28, 2010 Updated:June 9, 2010
Description: From the Debian alert:

David Leadbeater discovered an integer underflow that could be triggered via the LINKS command and can lead to a denial of service or the execution of arbitrary code (CVE-2009-4016). This issue affects both, ircd-hybrid and ircd-ratbox.

It was discovered that the ratbox IRC server is prone to a denial of service attack via the HELP command. The ircd-hybrid package is not vulnerable to this issue (CVE-2010-0300).

Alerts:
Fedora FEDORA-2010-9312 2010-05-31
Fedora FEDORA-2010-9312 2010-05-31
Debian DSA-1980-1 2010-01-27

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds