René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

106 lines
3.0 KiB
JSON

{
"id": "CVE-2007-4584",
"sourceIdentifier": "cve@mitre.org",
"published": "2007-08-29T01:17:00.000",
"lastModified": "2017-09-29T01:29:19.563",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Stack-based buffer overflow in BitchX 1.1 Final allows remote IRC servers to execute arbitrary code via a long string in a MODE command, related to the p_mode variable."
},
{
"lang": "es",
"value": "Desbordamiento de b\u00fafer basado en pila en BitchX 1.1 Final permite a servidores IRC remotos ejecutar c\u00f3digo de su elecci\u00f3n mediante una cadena larga en un comando MODE, relacionado con la variable p_mode."
}
],
"vendorComments": [
{
"organization": "Red Hat",
"comment": "Not vulnerable. This issue did not affect the version of IrcII as shipped with Red Hat Enterprise Linux 2.1. IrcII was not shipped in Enterprise Linux 3, 4, or 5.",
"lastModified": "2007-09-24T00:00:00"
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 10.0
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": true,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-119"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:bitchx:bitchx:1.1-final:*:*:*:*:*:*:*",
"matchCriteriaId": "470FD7C0-78F6-48C2-B98A-F873B668A501"
}
]
}
]
}
],
"references": [
{
"url": "http://security.gentoo.org/glsa/glsa-200807-12.xml",
"source": "cve@mitre.org"
},
{
"url": "http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.285737",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/25462",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2007/2994",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/36306",
"source": "cve@mitre.org"
},
{
"url": "https://www.exploit-db.com/exploits/4321",
"source": "cve@mitre.org"
}
]
}