CVE-2014-9773: High severity openSUSE Leap vulnerability
Published Jun 13, 2016
·Updated
modules/chanserv/flags.c in Atheme before 7.2.7 allows remote attackers to modify the Anope FLAGS behavior by registering and dropping the (1) LIST, (2) CLEAR, or (3) MODIFY keyword nicks.
Affected Software
3 affected components
openSUSE Leap=42.1
openSUSE openSUSE=13.2
Atheme Atheme<=7.2.6
Event History
Jun 13, 2016
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-9773?
CVE-2014-9773 has been rated as a medium severity vulnerability, as it allows remote attackers to modify specific Anope FLAGS behaviors.
2
How do I fix CVE-2014-9773?
To fix CVE-2014-9773, update Atheme to version 7.2.7 or later, which addresses this vulnerability.
3
Which versions of Atheme are affected by CVE-2014-9773?
CVE-2014-9773 affects Atheme versions prior to 7.2.7.
4
What kind of attacks does CVE-2014-9773 enable?
CVE-2014-9773 enables remote attackers to register and drop certain keyword nicks, altering the intended behavior of Anope FLAGS.
5
Is CVE-2014-9773 a local or remote vulnerability?
CVE-2014-9773 is a remote vulnerability, as it can be exploited over a network by attackers.