Lucene search

K
freebsdFreeBSD8685D412-8468-11DF-8D45-001D7D9EB79A
HistoryMay 17, 2010 - 12:00 a.m.

kvirc -- multiple vulnerabilities

2010-05-1700:00:00
vuxml.freebsd.org
15

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.018

Percentile

88.1%

Two security vulnerabilities have been discovered:

Multiple format string vulnerabilities in the DCC functionality
in KVIrc 3.4 and 4.0 have unspecified impact and remote attack vectors.

Directory traversal vulnerability in the DCC functionality
in KVIrc 3.4 and 4.0 allows remote attackers to overwrite
arbitrary files via unknown vectors.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchkvirc< 4.0.0UNKNOWN
FreeBSDanynoarchkvirc-devel< 4.0.0UNKNOWN

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.018

Percentile

88.1%