- EPSS 1.38%
- Veröffentlicht 28.03.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
channel.c in ngIRCd 20 and 20.1 allows remote attackers to cause a denial of service (assertion failure and crash) via a KICK command for a user who is not on the associated channel.
CVE-2009-4652
- EPSS 1.11%
- Veröffentlicht 26.02.2010 18:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in src/ngircd/conn.c in ngIRCd 13 and 14, when SSL/TLS support is present and standalone mode is disabled, allow remote attackers to cause a denial of service (application crash) by sending th...
- EPSS 1.24%
- Veröffentlicht 16.01.2008 00:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
ngIRCd 0.10.x before 0.10.4 and 0.11.0 before 0.11.0-pre2 allows remote attackers to cause a denial of service (crash) via crafted IRC PART message, which triggers an invalid dereference.
- EPSS 1.18%
- Veröffentlicht 20.11.2007 23:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
irc-channel.c in ngIRCd before 0.10.3 allows remote attackers to cause a denial of service (crash) via a JOIN command without a channel argument.
CVE-2005-0226
- EPSS 10.01%
- Veröffentlicht 03.02.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT, logging to SYSLOG, and with DEBUG enabled, allows remote attackers to execute arbitrary code.