5
CVSSv2

CVE-2007-5226

Published: 05/10/2007 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

irc_server.c in dircproxy 1.2.0 and previous versions allows remote malicious users to cause a denial of service (segmentation fault) via an ACTION command without a parameter, which triggers a NULL pointer dereference, as demonstrated using a blank /me message from irssi.

Vulnerable Product Search on Vulmon Subscribe to Product

dircproxy dircproxy

Vendor Advisories

Debian Bug report logs - #445883 CVE-2007-5226 remote denial of service Package: dircproxy; Maintainer for dircproxy is Alex Pennace <alex@pennaceorg>; Source for dircproxy is src:dircproxy (PTS, buildd, popcon) Reported by: Nico Golde <nion@debianorg> Date: Mon, 8 Oct 2007 21:57:02 UTC Severity: grave Tags: patc ...