CVE-2005-0199

CRITICAL

Barton Ngircd < 0.8.2 - Integer Underflow

Title source: rule

Description

Integer underflow in the Lists_MakeMask() function in lists.c in ngIRCd before 0.8.2 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long MODE line that causes an incorrect length calculation, which leads to a buffer overflow.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Florian Westphal · cdoslinux
https://www.exploit-db.com/exploits/25070

Scores

CVSS v3 9.8
EPSS 0.2015
EPSS Percentile 95.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-191
Status draft

Affected Products (1)

barton/ngircd < 0.8.2

Timeline

Published May 02, 2005
Tracked Since Feb 18, 2026