The dc_chat function in cmd.dc.c in DConnect Daemon 0.7.0 and earlier allows remote attackers to cause a denial of service (application crash) by sending a client message before providing the nickname, which triggers a null pointer dereference.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Dconnect_daemon | Dconnect | 0.0.2 (including) | 0.0.2 (including) |
Dconnect_daemon | Dconnect | 0.0.3 (including) | 0.0.3 (including) |
Dconnect_daemon | Dconnect | 0.7.0 (including) | 0.7.0 (including) |