[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Remote buffer overflow, remote DoS and format string bug in current IRCd's tkserv - correction


  • Subject: Remote buffer overflow, remote DoS and format string bug in current IRCd's tkserv - correction
  • From: Paul Starzetz <paul@STARZETZ.DE>
  • Date: Mon, 5 Mar 2001 21:16:45 +0100
  • Approved-By: aleph1@SECURITYFOCUS.COM
  • Delivered-To: bugtraq@lists.securityfocus.com
  • Delivered-To: BUGTRAQ@SECURITYFOCUS.COM
  • Reply-To: Paul Starzetz <paul@STARZETZ.DE>
  • Sender: Bugtraq List <BUGTRAQ@SECURITYFOCUS.COM>

Small correction:

One needs at least one _non_ OPERED line in tkserv.access in order to be 
vulnerable to the mentioned
buffer overflow attack. I've read the code too fast :-)


ihq.