6.8

CVE-2007-2807

Exploit
Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop 1.6.18, and possibly earlier, allows user-assisted, remote IRC servers to execute arbitrary code via a long private message.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
EggheadsEggdrop Irc Bot Version <= 1.6.18
EggheadsEggdrop Irc Bot Version1.6.8
EggheadsEggdrop Irc Bot Version1.6.9
EggheadsEggdrop Irc Bot Version1.6.10
EggheadsEggdrop Irc Bot Version1.6.11
EggheadsEggdrop Irc Bot Version1.6.12
EggheadsEggdrop Irc Bot Version1.6.13
EggheadsEggdrop Irc Bot Version1.6.14
EggheadsEggdrop Irc Bot Version1.6.15
EggheadsEggdrop Irc Bot Version1.6.16
EggheadsEggdrop Irc Bot Version1.6.17
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 9.98% 0.95
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=427157
http://osvdb.org/36237
http://secunia.com/advisories/25276
Vendor Advisory
http://secunia.com/advisories/26727
http://secunia.com/advisories/26826
http://secunia.com/advisories/27989
http://secunia.com/advisories/28347
http://secunia.com/advisories/35690
http://security.gentoo.org/glsa/glsa-200709-07.xml
http://securitytracker.com/id?1018700
http://www.debian.org/security/2008/dsa-1448
http://www.debian.org/security/2009/dsa-1826
http://www.eggheads.org/bugzilla/show_bug.cgi?id=462
Exploit
http://www.mandriva.com/security/advisories?name=MDKSA-2007:175
http://www.securityfocus.com/bid/24070
https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00336.html
https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00348.html