Vulnerabilities > CVE-2007-1397 - Remote Buffer Overflow vulnerability in Fish

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
fish
critical
exploit available

Summary

Multiple stack-based buffer overflows in the (1) ExtractRnick and (2) decrypt_topic_332 functions in FiSH allow remote attackers to execute arbitrary code via long strings.

Vulnerable Configurations

Part Description Count
Application
Fish
3

Exploit-Db

  • descriptionFish Multiple Remote Buffer Overflow Vulnerabilities. CVE-2007-1397. Dos exploit for windows platform
    idEDB-ID:29721
    last seen2016-02-03
    modified2007-03-08
    published2007-03-08
    reporterilja van sprundel
    sourcehttps://www.exploit-db.com/download/29721/
    titleFish Multiple Remote Buffer Overflow Vulnerabilities
  • descriptionFiSH-irssi 0.99 - Evil ircd Buffer Overflow. CVE-2007-1397. Remote exploit for linux platform
    idEDB-ID:17181
    last seen2016-02-02
    modified2011-04-17
    published2011-04-17
    reporterCaleb James DeLisle
    sourcehttps://www.exploit-db.com/download/17181/
    titleFiSH-irssi 0.99 - Evil ircd Buffer Overflow

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/100517/fish-overflow.txt
idPACKETSTORM:100517
last seen2016-12-05
published2011-04-17
reporterCaleb James DeLisle
sourcehttps://packetstormsecurity.com/files/100517/FiSH-irssi-0.99-Buffer-Overflow.html
titleFiSH-irssi 0.99 Buffer Overflow

Seebug

  • bulletinFamilyexploit
    descriptionNo description provided by source.
    idSSV:83204
    last seen2017-11-19
    modified2014-07-01
    published2014-07-01
    reporterRoot
    sourcehttps://www.seebug.org/vuldb/ssvid-83204
    titleFish Multiple Remote Buffer Overflow Vulnerabilities
  • bulletinFamilyexploit
    descriptionNo description provided by source.
    idSSV:71623
    last seen2017-11-19
    modified2014-07-01
    published2014-07-01
    reporterRoot
    sourcehttps://www.seebug.org/vuldb/ssvid-71623
    titleFiSH-irssi 0.99 - Evil ircd Buffer Overflow