mod/server.mod/servmsg.c in Eggheads Eggdrop and Windrop 1.6.19 and previous versions allows remote malicious users to cause a denial of service (crash) via a crafted PRIVMSG that causes an empty string to trigger a negative string length copy. NOTE: this issue exists because of an incorrect fix for CVE-2007-2807.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
eggheads eggdrop 1.6.15 |
||
eggheads eggdrop 1.6.16 |
||
eggheads eggdrop 1.6.17 |
||
eggheads eggdrop 1.6.11 |
||
eggheads eggdrop 1.6.10 |
||
eggheads eggdrop 1.6.3 |
||
eggheads eggdrop 1.6.2 |
||
eggheads eggdrop 1.6.18 |
||
eggheads eggdrop irc bot |
||
eggheads eggdrop 1.6.9 |
||
eggheads eggdrop 1.6.8 |
||
eggheads eggdrop 1.6.1 |
||
eggheads eggdrop 1.6.0 |
||
philip moore windrop 1.6.10 |
||
philip moore windrop 1.6.9 |
||
philip moore windrop 1.6.1 |
||
philip moore windrop 1.6.0 |
||
philip moore windrop 1.6.2\\+bindsfix |
||
philip moore windrop 1.6.19\\+ctcpfix |
||
eggheads eggdrop 1.6.13 |
||
eggheads eggdrop 1.6.12 |
||
eggheads eggdrop 1.6.5 |
||
eggheads eggdrop 1.6.4 |
||
philip moore windrop 1.6.17 |
||
philip moore windrop 1.6.16 |
||
philip moore windrop 1.6.15 |
||
philip moore windrop 1.6.6 |
||
philip moore windrop 1.6.4 |
||
philip moore windrop 1.5.4a |
||
philip moore windrop 1.5.4 |
||
eggheads eggdrop 1.6.14 |
||
eggheads eggdrop 1.6.7 |
||
eggheads eggdrop 1.6.6 |
||
philip moore windrop |
||
philip moore windrop 1.6.18 |
||
philip moore windrop 1.6.8 |
||
philip moore windrop 1.6.7 |
||
philip moore windrop 1.4.4 |
||
philip moore windrop 1.6.12 |
||
philip moore windrop 1.6.13 |
||
philip moore windrop 1.4.6 |
||
philip moore windrop 1.6.3 |