First published: Thu May 27 2021(Updated: )
InspIRCd 3.8.0 through 3.9.x before 3.10.0 allows any user (able to connect to the server) to access recently deallocated memory, aka the "malformed PONG" issue.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
InspIRCd | >=3.8.0<3.10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-33586 is considered a moderate severity vulnerability due to its potential for disrupting service via memory access issues.
CVE-2021-33586 affects all users of InspIRCd from versions 3.8.0 to 3.9.x before 3.10.0.
To fix CVE-2021-33586, you should upgrade to InspIRCd version 3.10.0 or later.
CVE-2021-33586 represents an issue that allows any user to access recently deallocated memory through a malformed PONG message.
There is no documented workaround for CVE-2021-33586, and upgrading is the advised solution.