CVE-2012-1836: Buffer Overflow
Published Mar 22, 2012
·Updated
Heap-based buffer overflow in dns.cpp in InspIRCd 2.0.5 might allow remote attackers to execute arbitrary code via a crafted DNS query that uses compression.
Affected Software
2 affected componentsFixes available
debian/inspircd
3.8.1-23.15.0-13.17.0-1
inspircd inspircd=2.0.5
Remediation
Patch Available
Event History
Mar 22, 2012
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Mar 20, 2015
Data Sourced
via Debian·10:09 PM
SeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2012-1836?
CVE-2012-1836 is classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2012-1836?
To fix CVE-2012-1836, update your InspIRCd to version 3.8.1-2, 3.15.0-1, or 3.17.0-1 as they contain the necessary patches.
3
What software is affected by CVE-2012-1836?
CVE-2012-1836 affects InspIRCd version 2.0.5.
4
Can CVE-2012-1836 be exploited remotely?
Yes, CVE-2012-1836 can be exploited remotely via a crafted DNS query.
5
What type of vulnerability is CVE-2012-1836?
CVE-2012-1836 is a heap-based buffer overflow vulnerability.