espernet irc services

From: McClain Looney (mcclainat_private)
Date: Fri Jul 24 1998 - 17:05:35 PDT

  • Next message: Adrian Dabrowski: "smal bug in icmpinfo"

    I didn't think anyone cared about irc, but seeing the mIRC posts on this
    list, here goes:
    
    Espernet irc services below version 3.3.5 are vulnerable to a bug in the
    add/remove code for chanserv which causes a segmentation fault in the
    server.  The bug is not widely known or exploited (as far as i can tell),
    but innocent users will likely crash any services daemon repeatedly, and at
    random, (hey, this command didn't work, lets try it again, and again, and
    again...etc).  The bug manifests itself after an ordered series of
    add/remove commands to chanserv (i won't get into what they are, but it's
    definitely reproducible).
    
    The latest version (3.3.6)of espernet services is at
    ftp://ftp.dragonfire.net/software/unix/irc/services
    
    -Citizen_D
    irc.stomped.com
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:08:13 PDT