Ircd hybrid-6 Buffer Overflow Vulnerability
BID:581
Info
Ircd hybrid-6 Buffer Overflow Vulnerability
| Bugtraq ID: | 581 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Aug 13 1999 12:00AM |
| Updated: | Aug 13 1999 12:00AM |
| Credit: | This vulnerability was discovered by jduck and stranjer of w00w00 and posted to the Bugtraq mailing list by Matt Conover <[email protected]> on Fri Aug 13 1999 07:01:58. |
| Vulnerable: |
Hybrid Hybrid Ircd 6.0 Beta58 |
| Not Vulnerable: |
Hybrid Hybrid Ircd 5.0.3 p7 |
Discussion
Ircd hybrid-6 Buffer Overflow Vulnerability
Ircd hybrid-6 (up to beta 58) has a vulnerability which can allow remote access to the irc server (ircd). In most cases this attack results in the attacker gaining the privileges of the user 'irc'.
This vulnerability is in the invite handling code (m_invite). In a channel with operators (ops) and modes +pi (paranoid + invite-only), a channel invitation is reported to all other operators. The buffer used to store the invitation notice can be overflown by up to 15 bytes.
Ircd hybrid-6 (up to beta 58) has a vulnerability which can allow remote access to the irc server (ircd). In most cases this attack results in the attacker gaining the privileges of the user 'irc'.
This vulnerability is in the invite handling code (m_invite). In a channel with operators (ops) and modes +pi (paranoid + invite-only), a channel invitation is reported to all other operators. The buffer used to store the invitation notice can be overflown by up to 15 bytes.
Exploit / POC
Solution / Fix
Ircd hybrid-6 Buffer Overflow Vulnerability
Solution:
It is believed that this problem has been addressed in version 6 post Beta 58. Current versions of Hybrid can be found at:
ftp://ftp.blackened.com/pub/irc/hybrid
Solution:
It is believed that this problem has been addressed in version 6 post Beta 58. Current versions of Hybrid can be found at:
ftp://ftp.blackened.com/pub/irc/hybrid