PT-2005-1307 · Ngircd · Ngircd

Coki

·

Published

2005-02-03

·

Updated

2016-10-18

·

CVE-2005-0226

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions ngIRCd versions 0.8.2 and earlier
Description The issue is related to a format string vulnerability in the Log Resolver function. This vulnerability can be exploited by remote attackers to execute arbitrary code when certain conditions are met, such as compilation with IDENT, logging to SYSLOG, and DEBUG enabled.
Recommendations For ngIRCd versions 0.8.2 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-0226

Affected Products

Ngircd