First published: Sat Apr 17 2004(Updated: )
Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to execute arbitrary code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/xchat | 2.8.8-17 | |
XChat | =1.8.0 | |
XChat | =1.8.1 | |
XChat | =1.8.2 | |
XChat | =1.8.3 | |
XChat | =1.8.4 | |
XChat | =1.8.5 | |
XChat | =1.8.6 | |
XChat | =1.8.7 | |
XChat | =1.8.8 | |
XChat | =1.8.9 | |
XChat | =1.9.0 | |
XChat | =1.9.1 | |
XChat | =1.9.2 | |
XChat | =1.9.3 | |
XChat | =1.9.4 | |
XChat | =1.9.5 | |
XChat | =1.9.6 | |
XChat | =1.9.7 | |
XChat | =1.9.8 | |
XChat | =1.9.9 | |
XChat | =2.0.0 | |
XChat | =2.0.1 | |
XChat | =2.0.2 | |
XChat | =2.0.3 | |
XChat | =2.0.4 | |
XChat | =2.0.5 | |
XChat | =2.0.6 | |
XChat | =2.0.7 | |
XChat | =2.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0409 is rated as a high-severity vulnerability due to its potential to allow remote code execution.
To mitigate CVE-2004-0409, update XChat to version 2.8.8-17 or later.
CVE-2004-0409 affects XChat versions 1.8.0 through 2.0.8 with Socks-5 proxy enabled.
Yes, CVE-2004-0409 can be exploited remotely if the vulnerable version of XChat is exposed.
CVE-2004-0409 is a stack-based buffer overflow vulnerability.