20001207 BitchX DNS Overflow Patchmailing list
http://archives.neohapsis.com/archives/bugtraq/2000-12/0081.html CVE-2001-0050
BitchX IRC Client 1.0 c17 - DNS Buffer Overflow
Record summary
CVE-2001-0050 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in BitchX IRC client allows remote attackers to cause a denial of service and possibly execute arbitrary commands via an IP address that resolves to a long DNS hostname or domain name.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBBitchX IRC Client 1.0 c17 - DNS Buffer OverflowExploitDB exploitby nimroodNot analyzed1 file
References
820001207 bitchx/ircd DNS overflow demonstrationmailing list
http://archives.neohapsis.com/archives/bugtraq/2000-12/0086.html CLA-2000:364Vendor advisory
http://distro.conectiva.com.br/atualizacoes?id=a&anuncio=000364 MDKSA-2000:079Vendor advisory
http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-079.php3 RHSA-2000:126Vendor advisory
http://www.redhat.com/support/errata/RHSA-2000-126.html 2087vdb entry
http://www.securityfocus.com/bid/2087 irc-bitchx-dns-bo(5701)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/5701 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0050