CVE-2002-0382: High severity xchat xchat vulnerability
Published Jun 25, 2002
·Updated
XChat IRC client allows remote attackers to execute arbitrary commands via a /dns command on a host whose DNS reverse lookup contains shell metacharacters.
Affected Software
1 affected component
Xchat xchat<=1.89
Event History
Jun 25, 2002
CVE Published
04:00 AM
Apr 2, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0382?
CVE-2002-0382 is considered a critical vulnerability due to its potential for remote code execution.
2
How does CVE-2002-0382 exploit vulnerabilities in XChat?
CVE-2002-0382 exploits vulnerabilities by allowing attackers to execute arbitrary commands using the /dns command with manipulated DNS responses.
3
Which versions of XChat are affected by CVE-2002-0382?
CVE-2002-0382 affects all versions of XChat up to 1.89.
4
How can I mitigate the risks associated with CVE-2002-0382?
To mitigate CVE-2002-0382, you should upgrade to a patched version of XChat that addresses this vulnerability.
5
Is there a known fix for CVE-2002-0382?
Yes, the known fix for CVE-2002-0382 is to update XChat to a version higher than 1.89.