vendor:
IrcII
by:
bladi & aLmUDeNa
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: IrcII
Affected Version From: ircII-4.4
Affected Version To:
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested: Unix
Buffer Overflow in IrcII DCC Chat
A buffer overflow vulnerability exists in the direct client-to-client (DCC) chat implementation of IrcII version 4.4-7 and possibly previous versions. This vulnerability allows an attacker to execute arbitrary code on a client attempting to initiate a DCC chat, potentially leading to a remote compromise with the privileges of the user running the ircII client.
Mitigation:
Upgrade to ircII-4.4M or later version.