VDB
CVE-2006-6811
CVE-2006-6811
PUBLISHED
CVSS 4.300000190734863 MEDIUM
KsIRC 1.3.12 allows remote attackers to cause a denial of service (crash) via a long PRIVMSG string when connecting to an Internet Relay Chat (IRC) server, which causes an assertion failure and results in a NULL pointer dereference. NOTE: this issue was originally reported as a buffer overflow.
EPSS 5.26% · 90.2th percentile
Risk Scores
CVSS 2.0
4.300000190734863
EPSS Score
5.26%
90.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| kde | ksirc | 1.3.12 |
| canonical | ubuntu_linux | 5.10, 6.06, 6.10 |
Timeline
- Dec 29, 2006 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Dec 22, 2023 EPSS Score
References
- USN-409-1 vendor-advisory
- https://issues.rpath.com/browse/RPL-922 url
- 3023 exploit
- ADV-2006-5199 vdb
- 20070109 [KDE Security Advisory] ksirc Denial of Service vulnerability mailing-list
- 21790 vdb
- MDKSA-2007:009 vendor-advisory
- http://www.kde.org/info/security/advisory-20070109-1.txt url
- ksirc-privmsg-bo(31134) vdb
- 33443 vdb
- 1017453 vdb
- http://www.addict3d.org/index.php?page=viewarticle&trace=0&type=security&ID=8468 url
- GLSA-200701-26 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2006-6811 advisory