- EPSS 2.71%
- Veröffentlicht 28.03.2013 23:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
channel.c in ngIRCd 20 and 20.1 allows remote attackers to cause a denial of service (assertion failure and crash) via a KICK command for a user who is not on the associated channel.
CVE-2009-4652
- EPSS 1.6%
- Veröffentlicht 26.02.2010 18:30:00
- Zuletzt bearbeitet 16.06.2026 23:14:06
The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in src/ngircd/conn.c in ngIRCd 13 and 14, when SSL/TLS support is present and standalone mode is disabled, allow remote attackers to cause a denial of service (application crash) by sending th...
- EPSS 1.8%
- Veröffentlicht 16.01.2008 00:00:00
- Zuletzt bearbeitet 16.06.2026 22:49:19
ngIRCd 0.10.x before 0.10.4 and 0.11.0 before 0.11.0-pre2 allows remote attackers to cause a denial of service (crash) via crafted IRC PART message, which triggers an invalid dereference.
- EPSS 1.75%
- Veröffentlicht 20.11.2007 23:46:00
- Zuletzt bearbeitet 16.06.2026 22:47:21
irc-channel.c in ngIRCd before 0.10.3 allows remote attackers to cause a denial of service (crash) via a JOIN command without a channel argument.
CVE-2005-0226
- EPSS 9.72%
- Veröffentlicht 03.02.2005 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:10:44
Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT, logging to SYSLOG, and with DEBUG enabled, allows remote attackers to execute arbitrary code.