Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown
CVE-2007-5922
Disclosure Date: November 10, 2007 (last updated October 04, 2023)
The modules/mdop.m in the Cypress 1.0k script for BitchX, as downloaded from a distribution site in November 2007, contains an externally introduced backdoor that e-mails sensitive information (hostnames, usernames, and shell history) to a fixed address.
0
Attacker Value
Unknown
CVE-2007-5839
Disclosure Date: November 06, 2007 (last updated October 04, 2023)
The e_hostname function in commands.c in BitchX 1.1a allows local users to overwrite arbitrary files via a symlink attack on temporary files when using the (1) HOSTNAME or (2) IRCHOST command.
0
Attacker Value
Unknown
CVE-2007-4584
Disclosure Date: August 29, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in BitchX 1.1 Final allows remote IRC servers to execute arbitrary code via a long string in a MODE command, related to the p_mode variable.
0
Attacker Value
Unknown
CVE-2007-3360
Disclosure Date: June 22, 2007 (last updated October 04, 2023)
hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.
0
Attacker Value
Unknown
CVE-2003-1450
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
BitchX 75p3 and 1.0c16 through 1.0c20cvs allows remote attackers to cause a denial of service (segmentation fault) via a malformed RPL_NAMREPLY numeric 353 message.
0
Attacker Value
Unknown
CVE-2003-0322
Disclosure Date: June 09, 2003 (last updated February 22, 2025)
Integer overflow in BitchX IRC client 1.0-0c19 and earlier allows remote malicious IRC servers to cause a denial of service (crash).
0
Attacker Value
Unknown
CVE-2003-0321
Disclosure Date: June 09, 2003 (last updated February 22, 2025)
Multiple buffer overflows in BitchX IRC client 1.0-0c19 and earlier allow remote malicious IRC servers to cause a denial of service (crash) and possibly execute arbitrary code via long hostnames, nicknames, or channel names, which are not properly handled by the functions (1) send_ctcp, (2) cannot_join_channel, (3) cluster, (4) BX_compress_modes, (5) handle_oper_vision, and (6) ban_it.
0
Attacker Value
Unknown
CVE-2003-0334
Disclosure Date: May 10, 2003 (last updated February 22, 2025)
BitchX IRC client 1.0c20cvs and earlier allows attackers to cause a denial of service (core dump) via certain channel mode changes that are not properly handled in names.c.
0
Attacker Value
Unknown
CVE-2001-0050
Disclosure Date: February 16, 2001 (last updated February 22, 2025)
Buffer overflow in BitchX IRC client allows remote attackers to cause a denial of service and possibly execute arbitrary commands via an IP address that resolves to a long DNS hostname or domain name.
0