Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT, logging to SYSLOG, and with DEBUG enabled, allows remote attackers to execute arbitrary code.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=110746413108183&w=2 | mailing list |
http://secunia.com/advisories/14114/ | exploit third party advisory patch vendor advisory |
http://www.nosystem.com.ar/advisories/advisory-11.txt | exploit patch vendor advisory |
http://www.securityfocus.com/bid/12434 | vdb entry |