First published: Tue Oct 01 2013(Updated: )
The (1) Conn_StartLogin and (2) cb_Read_Resolver_Result functions in conn.c in ngIRCd 18 through 20.2, when the configuration option NoticeAuth is enabled, does not properly handle the return code for the Handle_Write function, which allows remote attackers to cause a denial of service (assertion failure and server crash) via unspecified vectors, related to a "notice auth" message not being sent to a new client.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Barton Ngircd | =18.0 | |
Barton Ngircd | =19.0 | |
Barton Ngircd | =19.1 | |
Barton Ngircd | =20.0 | |
Barton Ngircd | =20.1 | |
Barton Ngircd | =20.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.