CVE-2000-0594: Medium severity Caldera Openlinux Desktop vulnerability
Published Jul 4, 2000
·Updated
BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.
Affected Software
7 affected components
Caldera Openlinux Desktop=2.3
Caldera Openlinux Ebuilder=2.3
Caldera Openlinux Eserver=2.3
Mandrakesoft Mandrake Linux=2007
Caldera Openlinux Edesktop=2.4
FreeBSD FreeBSD=4.0
FreeBSD FreeBSD=3.5
Event History
Jul 4, 2000
CVE Published
04:00 AM
Oct 13, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0594?
CVE-2000-0594 is classified as a denial of service vulnerability.
2
How do I fix CVE-2000-0594?
To fix CVE-2000-0594, update to a patched version of the BitchX IRC client that properly sanitizes format strings.
3
Which software is affected by CVE-2000-0594?
CVE-2000-0594 affects versions 2.3 and 2.4 of Caldera OpenLinux, Mandrake Linux 2007, and FreeBSD versions 3.5 and 4.0.
4
What type of attacks can be executed using CVE-2000-0594?
Exploiting CVE-2000-0594 can lead to a denial of service condition by sending a malicious invite to a channel with specially crafted formatting characters.
5
Is CVE-2000-0594 a newly discovered vulnerability?
CVE-2000-0594 is an older vulnerability that was disclosed in the year 2000.