Gentoo: GLSA-200411-24: BNC: Buffer overflow vulnerability
Summary
Gentoo Linux Security Advisory GLSA 200411-24
https://security.gentoo.org/
Severity: High
Title: BNC: Buffer overflow vulnerability
Date: November 16, 2004
Bugs: #70674
ID: 200411-24
Synopsis
=======
BNC contains a buffer overflow vulnerability that may lead to Denial of
Service and execution of arbitrary code.
Background
=========
BNC (BouNCe) is an IRC proxy server.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 net-irc/bnc < 2.9.1 >= 2.9.1
==========
Leon Juranic discovered that BNC fails to do proper bounds checking
when checking server response.
Impact
=====
An attacker could exploit this to cause a Denial of Service and
potentially exe...
Resolution
References
Availability
Concerns
Background