hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.
References
Configurations
Information
Published : 2007-06-22 11:30
Updated : 2017-10-10 18:32
NVD link : CVE-2007-3360
Mitre link : CVE-2007-3360
JSON object : View
CWE
Products Affected
bitchx
- bitchx