EnergyMech CTCP Notice Denial of Service Vulnerability
BID:18664
CVE-2006-3293 |Info
EnergyMech CTCP Notice Denial of Service Vulnerability
| Bugtraq ID: | 18664 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 26 2006 12:00AM |
| Updated: | Jun 27 2006 04:30PM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
Gentoo Linux EnergyMech IRC Bot 3.0.1 EnergyMech IRC Bot 3.0 EnergyMech IRC Bot 2.99.79 EnergyMech IRC Bot 2.9.4 (devel) EnergyMech IRC Bot 2.8.5.1 EnergyMech IRC Bot 2.8.5 EnergyMech IRC Bot 2.8.5 EnergyMech IRC Bot 2.8.4 EnergyMech IRC Bot 2.8.3 EnergyMech IRC Bot 2.8.2 EnergyMech IRC Bot 2.8.1 EnergyMech IRC Bot 2.8 |
| Not Vulnerable: |
EnergyMech IRC Bot 3.0.2 |
Discussion
EnergyMech CTCP Notice Denial of Service Vulnerability
EnergyMech is prone to a denial-of-service vulnerability. Successful exploits will cause the application to crash, effectively denying service.
This issue affects versions prior to 3.0.2.
EnergyMech is prone to a denial-of-service vulnerability. Successful exploits will cause the application to crash, effectively denying service.
This issue affects versions prior to 3.0.2.
Exploit / POC
EnergyMech CTCP Notice Denial of Service Vulnerability
An attacker can exploit this issue by using an IRC client application.
An attacker can exploit this issue by using an IRC client application.
Solution / Fix
EnergyMech CTCP Notice Denial of Service Vulnerability
Solution:
The vendor has released version 3.0.2 to address this issue.
Please see the referenced vendor advisories for more information.
Solution:
The vendor has released version 3.0.2 to address this issue.
Please see the referenced vendor advisories for more information.
References
EnergyMech CTCP Notice Denial of Service Vulnerability
References:
References:
- EnergyMech 3.0 Changelog (EnergyMech)
- EnergyMech Home Page (EnergyMech)