Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Gentoo: GLSA-200404-15 Low: XChat 2.0.x SOCKS5 Remote Exploit

gentoo
Calendar Grey April 19, 2004
Scroller Gentoo
XChat has been found to contain a SOCKS5 flaw that permits remote code execution; resolution details provided herein.
XChat is vulnerable to a stack overflow that may allow a remote attacker to run arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200404-15 https://security.gentoo.org/ Severity: Low Title: XChat 2.0.x SOCKS5 Vulnerability
Date: April 19, 2004 Bugs: #46856 ID: 200404-15

Synopsis ======= XChat is vulnerable to a stack overflow that may allow a remote attacker to run arbitrary code.
Background ========= XChat is a multiplatform IRC client.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- net-irc/xchat < 2.0.8-r1 >= 2.0.8-r1
========== The SOCKS 5 proxy code in XChat is vulnerable to a remote exploit. Users would have to be using XChat through a SOCKS 5 server, enable SOCKS 5 traversal which is disabled by default and also connect to an attacker'...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
low
Lowest
Low
Medium
High
Critical

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround