Vulnerability Name: | CVE-2000-0594 (CCN-4897) | ||||||||
Assigned: | 2000-07-04 | ||||||||
Published: | 2000-07-04 | ||||||||
Updated: | 2017-10-10 | ||||||||
Summary: | BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: CCN Type: FreeBSD Security Advisory FreeBSD-SA-00:32 bitchx port contains client-side vulnerability Source: CCN Type: Caldera International, Inc. Security Advisory CSSA-2000-022.0 Denial of Service against irc-BX Source: BUGTRAQ Type: UNKNOWN 20000704 BitchX exploit possibly waiting to happen, certain DoS Source: CCN Type: BugTraq Mailing List, Mon Jul 03 2000 - 17:19:50 CDT BitchX exploit possibly waiting to happen, certain DoS Source: CCN Type: BugTraq Mailing List, Tue Jul 04 2000 - 01:01:18 CDT remote crash BitchX 1.0c16 Source: BUGTRAQ Type: UNKNOWN 20000707 CONECTIVA LINUX SECURITY ANNOUNCEMENT - BitchX Source: BUGTRAQ Type: UNKNOWN 20000707 BitchX update Source: FREEBSD Type: UNKNOWN FreeBSD-SA-00:32 Source: CCN Type: Vuln-Dev Mailing List, Tue Jul 04 2000 - 19:24:41 CDT BitchX /ignore bug Source: VULN-DEV Type: UNKNOWN 20000704 BitchX /ignore bug Source: MITRE Type: CNA CVE-2000-0594 Source: CCN Type: Conectiva Linux Announcement CLSA-2000:139 CONECTIVA LINUX SECURITY ANNOUNCEMENT - BitchX Source: CCN Type: RHSA-2000:042-01 BitchX denial of service vulnerability Source: CALDERA Type: UNKNOWN CSSA-2000-022.0 Source: CCN Type: OSVDB ID: 1445 BitchX IRC Client INVITE Format String DoS Source: REDHAT Type: UNKNOWN RHSA-2000:042 Source: BID Type: UNKNOWN 1436 Source: CCN Type: BID-1436 BitchX IRC Client "/INVITE" Format String Vulnerability Source: CCN Type: MandrakeSoft Security Advisory MDKSA-2000:017 BitchX Source: XF Type: UNKNOWN irc-bitchx-invite-dos(4897) Source: XF Type: UNKNOWN irc-bitchx-invite-dos(4897) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: ![]() | ||||||||
BACK |