Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT, logging to SYSLOG, and with DEBUG enabled, allows remote attackers to execute arbitrary code.
References
Link | Resource |
---|---|
http://www.nosystem.com.ar/advisories/advisory-11.txt | Exploit Patch Vendor Advisory |
http://secunia.com/advisories/14114/ | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/bid/12434 | |
http://marc.info/?l=bugtraq&m=110746413108183&w=2 |
Configurations
Information
Published : 2005-02-02 21:00
Updated : 2016-10-17 20:08
NVD link : CVE-2005-0226
Mitre link : CVE-2005-0226
JSON object : View
CWE
Products Affected
ngircd
- ngircd