Gentoo: GLSA-200701-26: KSirc: Denial of Service vulnerability
Summary
Gentoo Linux Security Advisory GLSA 200701-26
https://security.gentoo.org/
Severity: Normal
Title: KSirc: Denial of Service vulnerability
Date: January 29, 2007
Updated: January 30, 2007
Bugs: #159658
ID: 200701-26
Synopsis
=======
KSirc is vulnerable to a Denial of Service attack.
Background
=========
KSirc is the default KDE IRC client.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 kde-base/ksirc < 3.5.5-r1 >= 3.5.5-r1
==========
KSirc fails to check the size of an incoming PRIVMSG string sent from
an IRC server during the connection process.
Impact
=====
A malicious IRC server could send a long PRIVMSG string to the KSirc
client causing an ass...
Resolution
References
Availability
Concerns
Background