5
CVSSv2

CVE-2020-14148

Published: 15/06/2020 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The Server-Server protocol implementation in ngIRCd prior to 26~rc2 allows an out-of-bounds access, as demonstrated by the IRC_NJOIN() function.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

barton ngircd 26.0

barton ngircd

debian debian linux 8.0

fedoraproject fedora 31

fedoraproject fedora 32

Vendor Advisories

Debian Bug report logs - #963147 ngircd: CVE-2020-14148 Package: src:ngircd; Maintainer for src:ngircd is Christoph Biedl <debianaxhn@manchmalin-ulmde>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 19 Jun 2020 17:09:02 UTC Severity: important Tags: confirmed, patch, pending, security, upstream ...