CVE Vulnerabilities

CVE-2009-4016

Published: Feb 04, 2010 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
6.4 CRITICAL
AV:N/AC:L/Au:N/C:N/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.

Affected Software

NameVendorStart VersionEnd Version
Ircd-hybridIrcd-hybrid7.2.2 (including)7.2.2 (including)
Ircd-hybridIrcd-hybrid7.2.3 (including)7.2.3 (including)
Ircd-hybridUbuntuartful*
Ircd-hybridUbuntubionic*
Ircd-hybridUbuntucosmic*
Ircd-hybridUbuntudapper*
Ircd-hybridUbuntudevel*
Ircd-hybridUbuntuesm-apps/bionic*
Ircd-hybridUbuntuesm-apps/xenial*
Ircd-hybridUbuntuhardy*
Ircd-hybridUbuntuintrepid*
Ircd-hybridUbuntujaunty*
Ircd-hybridUbuntukarmic*
Ircd-hybridUbuntulucid*
Ircd-hybridUbuntumaverick*
Ircd-hybridUbuntunatty*
Ircd-hybridUbuntuoneiric*
Ircd-hybridUbuntuprecise*
Ircd-hybridUbuntuquantal*
Ircd-hybridUbunturaring*
Ircd-hybridUbuntusaucy*
Ircd-hybridUbuntutrusty*
Ircd-hybridUbuntuutopic*
Ircd-hybridUbuntuvivid*
Ircd-hybridUbuntuwily*
Ircd-hybridUbuntuxenial*
Ircd-hybridUbuntuyakkety*
Ircd-hybridUbuntuzesty*
Ircd-ratboxUbuntuhardy*
Ircd-ratboxUbuntuintrepid*
Ircd-ratboxUbuntujaunty*
Ircd-ratboxUbuntukarmic*
Ircd-ratboxUbuntulucid*
Ircd-ratboxUbuntumaverick*
Ircd-ratboxUbuntunatty*
Ircd-ratboxUbuntuoneiric*
Ircd-ratboxUbuntuprecise*
Ircd-ratboxUbuntuquantal*
Ircd-ratboxUbunturaring*
Ircd-ratboxUbuntusaucy*
Ircd-ratboxUbuntuupstream*
Ircd-ratboxUbuntuutopic*
Ircd-ratboxUbuntuvivid*
Ircd-ratboxUbuntuwily*
Oftc-hybridUbuntuhardy*
Oftc-hybridUbuntuintrepid*
Oftc-hybridUbuntujaunty*
Oftc-hybridUbuntukarmic*
Oftc-hybridUbuntulucid*
Oftc-hybridUbuntumaverick*
Oftc-hybridUbuntunatty*
Oftc-hybridUbuntuoneiric*
Oftc-hybridUbuntuprecise*
Oftc-hybridUbuntuquantal*
Oftc-hybridUbunturaring*

References