misc/149094: ports irc/kvirc-* vulnerability
Axel Gonzalez
loox at e-shell.net
Fri Jul 30 07:20:09 UTC 2010
>Number: 149094
>Category: misc
>Synopsis: ports irc/kvirc-* vulnerability
>Confidential: no
>Severity: serious
>Priority: medium
>Responsible: freebsd-bugs
>State: open
>Quarter:
>Keywords:
>Date-Required:
>Class: update
>Submitter-Id: current-users
>Arrival-Date: Fri Jul 30 07:20:08 UTC 2010
>Closed-Date:
>Last-Modified:
>Originator: Axel Gonzalez
>Release: 8.1-RELEASE
>Organization:
>Environment:
FreeBSD moonlight 8.1-RELEASE FreeBSD 8.1-RELEASE #0: Tue Jul 27 23:15:07 CDT 2010 toor at moonlight:/tmp/obj/usr/src/sys/LXCORE2e i386
>Description:
remote command execution.
https://svn.kvirc.de/kvirc/ticket/858
>How-To-Repeat:
Install kvirc, connect to server, be exploited
>Fix:
Apply the patch from:
https://svn.kvirc.de/kvirc/changeset/4693
>Release-Note:
>Audit-Trail:
>Unformatted:
More information about the freebsd-bugs
mailing list