xchat 2.0.6 allows remote attackers to cause a denial of service (crash) via a passive DCC request with an invalid ID number, which causes a null dereference.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
http://mail.nl.linux.org/xchat-announce/2003-12/msg00000.html | patch vendor advisory broken link |
http://marc.info/?l=bugtraq&m=107152093419276&w=2 | mailing list |