PT-2025-38003 · Unknown · Talkative Irc

Published

2025-09-16

·

Updated

2025-09-16

·

CVE-2009-20007

CVSS v4.0

9.3

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions Talkative IRC version 0.4.4.16
Description Talkative IRC version 0.4.4.16 is susceptible to a stack-based buffer overflow when handling specially crafted response strings received from a connected client. An attacker can exploit this issue by sending an excessively long message, causing a fixed-length buffer to overflow, which could lead to arbitrary code execution within the vulnerable process. This flaw is remotely exploitable and does not require authentication.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2009-20007

Affected Products

Talkative Irc