6.8
CVE-2009-4893
- EPSS 2.51%
- Veröffentlicht 15.06.2010 14:04:26
- Zuletzt bearbeitet 16.06.2026 23:14:33
- Erkennungen
Buffer overflow in UnrealIRCd 3.2beta11 through 3.2.8, when allow::options::noident is enabled, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Unrealircd ≫ Unrealircd Version 3.2 Update beta11
Unrealircd ≫ Unrealircd Version 3.2.1
Unrealircd ≫ Unrealircd Version 3.2.1 Update pre1
Unrealircd ≫ Unrealircd Version 3.2.1 Update pre2
Unrealircd ≫ Unrealircd Version 3.2.2
Unrealircd ≫ Unrealircd Version 3.2.2 Update pre1
Unrealircd ≫ Unrealircd Version 3.2.3
Unrealircd ≫ Unrealircd Version 3.2.3 Update pre1
Unrealircd ≫ Unrealircd Version 3.2.3 Update pre2
Unrealircd ≫ Unrealircd Version 3.2.3 Update pre3
Unrealircd ≫ Unrealircd Version 3.2.3 Update pre4
Unrealircd ≫ Unrealircd Version 3.2.4
Unrealircd ≫ Unrealircd Version 3.2.4 Update pre1
Unrealircd ≫ Unrealircd Version 3.2.4 Update pre2
Unrealircd ≫ Unrealircd Version 3.2.4 Update rc1
Unrealircd ≫ Unrealircd Version 3.2.4 Update rc2
Unrealircd ≫ Unrealircd Version 3.2.4 Update rc3
Unrealircd ≫ Unrealircd Version 3.2.5
Unrealircd ≫ Unrealircd Version 3.2.5 Update rc1
Unrealircd ≫ Unrealircd Version 3.2.5 Update rc2
Unrealircd ≫ Unrealircd Version 3.2.5 Update rc3
Unrealircd ≫ Unrealircd Version 3.2.6
Unrealircd ≫ Unrealircd Version 3.2.6 Update rc1
Unrealircd ≫ Unrealircd Version 3.2.6 Update rc2
Unrealircd ≫ Unrealircd Version 3.2.6 Update rc3
Unrealircd ≫ Unrealircd Version 3.2.7
Unrealircd ≫ Unrealircd Version 3.2.7 Update rc1
Unrealircd ≫ Unrealircd Version 3.2.7 Update rc2
Unrealircd ≫ Unrealircd Version 3.2.8
Unrealircd ≫ Unrealircd Version 3.2.8 Update rc1
Unrealircd ≫ Unrealircd Version 3.2.8 Update rc2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.51% | 0.827 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
http://security.gentoo.org/glsa/glsa-201006-21.xml
http://www.openwall.com/lists/oss-security/2010/06/14/13
http://www.securityfocus.com/bid/42077
http://www.unrealircd.com/txt/unrealsecadvisory.20090413.txt