Vulnerabilities > Ircd Hybrid

DATE CVE VULNERABILITY TITLE RISK
2013-02-13 CVE-2013-0238 Improper Input Validation vulnerability in Ircd-Hybrid
The try_parse_v4_netmask function in hostmask.c in IRCD-Hybrid before 8.0.6 does not properly validate masks, which allows remote attackers to cause a denial of service (crash) via a mask that causes a negative number to be parsed.
network
low complexity
ircd-hybrid CWE-20
5.0
2010-02-04 CVE-2009-4016 Numeric Errors vulnerability in multiple products
Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
6.8
2004-12-06 CVE-2004-0605 Configuration vulnerability in multiple products
Non-registered IRC users using (1) ircd-hybrid 7.0.1 and earlier, (2) ircd-ratbox 1.5.1 and earlier, or (3) ircd-ratbox 2.0rc6 and earlier do not have a rate-limit imposed, which could allow remote attackers to cause a denial of service by repeatedly making requests, which are slowly dequeued.
network
low complexity
ircd-hybrid ircd-ratbox CWE-16
5.0