ctcphandler.cpp in Quassel before 0.6.3 and 0.7.x before 0.7.1 allows remote attackers to cause a denial of service (unresponsive IRC) via multiple Client-To-Client Protocol (CTCP) requests in a PRIVMSG message.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://git.quassel-irc.org/?p=quassel.git%3Ba=commitdiff%3Bh=a4ca568cdf68cf4a0343eb161518dc8e50cea87d | |
http://bugs.quassel-irc.org/issues/1023 | vendor advisory |
http://bugs.quassel-irc.org/issues/1024 | vendor advisory |
http://secunia.com/advisories/55581 | third party advisory vendor advisory |
http://ubuntu.com/usn/usn-991-1 | vendor advisory |
http://quassel-irc.org/node/115 | patch |
http://security.gentoo.org/glsa/glsa-201311-03.xml | vendor advisory |