Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Gentoo GLSA 202310-01 Alert: KVIrc Security Vulnerability Exploitation Risk

gentoo
Calendar Grey September 13, 2007
Dist Gentoo Esm H88
Critical exploit found in KVIrc necessitates swift update for those using Gentoo. Ensure protection by upgrading now.
A vulnerability has been discovered in KVIrc, allowing for the remote execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200709-02 https://security.gentoo.org/ Severity: Normal Title: KVIrc: Remote arbitrary code execution Date: September 13, 2007 Bugs: #183174 ID: 200709-02

Synopsis ======= A vulnerability has been discovered in KVIrc, allowing for the remote execution of arbitrary code.
Background ========= KVIrc is a free portable IRC client based on Qt.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-irc/kvirc < 3.2.6_pre20070714 >= 3.2.6_pre20070714
========== Stefan Cornelius from Secunia Research discovered that the "parseIrcUrl()" function in file src/kvirc/kernel/kvi_ircurl.cpp does not properly sanitise parts of the URI when building the comma...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3680305_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here