GLSA: Malformed dcc send requests in xchat-2.0.6 lead to a denial of service

From: Kurt Lieber (klieber_at_gentoo.org)
Date: 12/14/03

  • Next message: Max: "Buffer overflow/privilege escalation in MacOS X"
    Date: Sun, 14 Dec 2003 15:46:10 -0500
    To: bugtraq@securityfocus.com
    
    
    

    ---------------------------------------------------------------------------
    GENTOO LINUX SECURITY ANNOUNCEMENT 200312-06
    ---------------------------------------------------------------------------

    GLSA: 200312-06
    Package: net-irc/xchat
    Summary: Malformed dcc send requests in xchat-2.0.6 lead to a denial of
                 service
    Severity: medium
    Gentoo bug: 35623
    Date: 2003-12-14
    CVE: none
    Exploit: remote
    Affected: =2.0.6
    Fixed: >=2.0.6-r1

    DESCRIPTION:

    There is a remotely exploitable bug in xchat 2.0.6 that could lead to a denial
    of service attack. This is caused by sending a malformed DCC packet to xchat
    2.0.6, causing it to crash. Versions prior to 2.0.6 do not appear to be
    affected by this bug.

    For more information, please see:

    http://mail.nl.linux.org/xchat-announce/2003-12/msg00000.html

    SOLUTION:

    For Gentoo users, xchat-2.0.6 was marked ~arch (unstable) for most
    architectures. Since it was never marked as stable in the portage tree, only
    xchat users who have explictly added the unstable keyword to ACCEPT_KEYWORDS
    are affected. Users may updated affected machines to the patched version of
    xchat using the following commands:

    emerge sync
    emerge -pv '>=net-irc/xchat-2.0.6-r1'
    emerge '>=net-irc/xchat-2.0.6-r1'
    emerge clean

    
    



  • Next message: Max: "Buffer overflow/privilege escalation in MacOS X"

    Relevant Pages

    • [Full-Disclosure] GLSA: Malformed dcc send requests in xchat-2.0.6 lead to a denial of service
      ... Exploit: remote ... There is a remotely exploitable bug in xchat 2.0.6 that could lead to a denial ... This is caused by sending a malformed DCC packet to xchat ...
      (Full-Disclosure)
    • Re: xp remote desktop bluescreen or how to shoot your pc
      ... Windows XP Pro En SP3 Remote Desktop Blue Screen Procedure: ... Here comes the procedure to reproduce a severe bug in the windows xp ... this is not a proper place for a bug report in any case. ...
      (microsoft.public.windowsxp.work_remotely)
    • Re: Ancient history [was Re: Public disclosure ...]
      ... > be used to break security. ... > triggerable overwriting or invalid access bug can be used to break ... less always consisted of persuading/misusing an OS/library bug so as to ... several remote exploits seems to consist of a two-stage attack: ...
      (sci.crypt)
    • Re: Forcing system to save all open files
      ... However, thanks to a bug in the atheros wireless driver of my network card, ... Passwordless RSA key logins are impossible as the remote ... is there a way for me to force all open documents to be saved? ... Sync will write out all data in system buffers, but not in the user processes themselves unless they have already done the last write. ...
      (comp.os.linux.misc)
    • Re: Forcing system to save all open files
      ... However, thanks to a bug in the atheros wireless driver of my network card, ... Passwordless RSA key logins are impossible as the remote ... is there a way for me to force all open documents to be saved? ... even Microsoft Word running on Crossover Linux. ...
      (comp.os.linux.misc)

  • Quantcast