Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.100207
Kategorie:Denial of Service
Titel:Eggdrop < 1.6.19+ctcpfix Remote DoS Vulnerability
Zusammenfassung:Eggdrop is prone to a remote denial of service (DoS); vulnerability because it fails to adequately validate user-supplied input.
Beschreibung:Summary:
Eggdrop is prone to a remote denial of service (DoS)
vulnerability because it fails to adequately validate user-supplied input.

Vulnerability Insight:
This issue is related to the vulnerability described in BID 2407
(Eggdrop Server Module Message Handling Remote Buffer Overflow Vulnerability).

Vulnerability Impact:
An attacker may exploit this issue to crash the application,
resulting in a DoS condition.

Affected Software/OS:
Eggdrop prior to version 1.6.19+ctcpfix.

Solution:
Update to version 1.6.19+ctcpfix or later.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2009-1789
BugTraq ID: 34985
http://www.securityfocus.com/bid/34985
Bugtraq: 20090515 eggdrop/windrop remote crash vulnerability (Google Search)
http://www.securityfocus.com/archive/1/503574
Debian Security Information: DSA-1826 (Google Search)
http://www.debian.org/security/2009/dsa-1826
https://www.exploit-db.com/exploits/8695
https://www.redhat.com/archives/fedora-package-announce/2009-May/msg01333.html
https://www.redhat.com/archives/fedora-package-announce/2009-May/msg01337.html
http://archives.neohapsis.com/archives/fulldisclosure/2009-05/0129.html
http://www.mandriva.com/security/advisories?name=MDVSA-2009:126
http://osvdb.org/54460
http://secunia.com/advisories/35104
http://secunia.com/advisories/35158
http://secunia.com/advisories/35690
http://www.vupen.com/english/advisories/2009/1340
XForce ISS Database: eggdrop-servmsg-dos(50547)
https://exchange.xforce.ibmcloud.com/vulnerabilities/50547
CopyrightCopyright (C) 2009 Greenbone Networks GmbH

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.