Summary
IRCD-Hybrid and ircd-ratbox are prone to a remote integer-underflow vulnerability.
A remote attacker may exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will likely crash the application, denying service to legitimate users.
IRCD-Hybrid 7.2.2 and ircd-ratbox 2.2.8 are vulnerable other versions
may also be affected.
Solution
Updates are available. Please see the references for details.
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2009-4016 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Apple Safari Webkit Multiple Vulnerabilities - March 2011
- Adobe Products Unspecified Cross-Site Scripting Vulnerability June-2011 (Windows)
- Apple Safari Web Script Execution Vulnerabilites - June09
- Asterisk CIDR Notation in Access Rule Remote Security Bypass Vulnerability
- Apple Safari Multiple Memory Corruption Vulnerabilities-03 Aug14 (Mac OS X)