CVE-2012-6696: Input Validation
Published Sep 25, 2017
·Updated
inspircd in Debian before 2.0.7 does not properly handle unsigned integers. NOTE: This vulnerability exists because of an incomplete fix to CVE-2012-1836.
Affected Software
1 affected component
inspircd inspircd<=2.0.5
Remediation
Event History
Sep 25, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-6696?
CVE-2012-6696 is classified as a medium-severity vulnerability that affects the handling of unsigned integers in InspIRCd.
2
How do I fix CVE-2012-6696?
To fix CVE-2012-6696, upgrade InspIRCd to version 2.0.7 or later which contains the necessary fixes.
3
What software is affected by CVE-2012-6696?
CVE-2012-6696 affects InspIRCd versions prior to 2.0.7, specifically including versions up to 2.0.5.
4
What is the cause of CVE-2012-6696?
CVE-2012-6696 exists due to an incomplete fix for an earlier vulnerability, CVE-2012-1836, leading to improper handling of unsigned integers.
5
When was CVE-2012-6696 discovered?
CVE-2012-6696 was discovered in 2012 and pertains to vulnerabilities found in prior versions of InspIRCd.