Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
Vector
NETWORK
Complexity
MEDIUM
Authentication
NONE
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL
Ircd-ratbox Ircd-ratbox 1.2.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.2.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.4.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.4.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.2.3 (not an official CPE)
Google Chrome 35.0.1916.103
Oftc Oftc-hybrid 1.6.7 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.5.3 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.5.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.5.1 (not an official CPE)
Oftc Oftc-hybrid 1.6.6 (not an official CPE)
Oftc Oftc-hybrid 1.6.5 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.4 Rc1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.4 Rc2 (not an official CPE)
Oftc Oftc-hybrid 1.5.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.4 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.10 (not an official CPE)
Oftc Oftc-hybrid 1.5.5 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.3 (not an official CPE)
Oftc Oftc-hybrid 1.5.0 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.6 (not an official CPE)
Oftc Oftc-hybrid 1.5.3 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.5 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.0 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.8 (not an official CPE)
Oftc Oftc-hybrid 1.5.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.11 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.1.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.1.1 (not an official CPE)
Oftc Oftc-hybrid 1.4.0 (not an official CPE)
Oftc Oftc-hybrid 1.4.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.0 Rc1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.0 Rc2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.7 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.8 (not an official CPE)
Oftc Oftc-hybrid 1.5.4 (not an official CPE)
Google Chrome 35.0.1916.101
Oftc Oftc-hybrid 1.6.0 (not an official CPE)
Oftc Oftc-hybrid 1.6.2 (not an official CPE)
Oftc Oftc-hybrid 1.6.4 (not an official CPE)
Oftc Oftc-hybrid 1.6.1 (not an official CPE)
Oftc Oftc-hybrid 1.6.3 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.3 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.4 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.5 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.0 Beta1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.1.0 Beta2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.0 Rc3 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.3.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.0 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.3.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 1.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.9 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.8 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.6 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.7 (not an official CPE)
Oftc Oftc-hybrid 1.5.6 (not an official CPE)
Oftc Oftc-hybrid 1.5.7 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.0 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.0 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.1 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.3 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.5 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.4 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.4 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.5 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.3 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.6 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.2.2 (not an official CPE)
Ircd-ratbox Ircd-ratbox 2.0.7 (not an official CPE)