From 8b72a21af2f858ace9ab6b1ee52f1d0a72ee25cb Mon Sep 17 00:00:00 2001 From: makc Date: Wed, 30 Jun 2010 21:00:06 +0000 Subject: Document multiple vulnerabilities in irc/kvirc* Approved by: remko@ Feature safe: yes --- security/vuxml/vuln.xml | 34 ++++++++++++++++++++++++++++++++++ 1 file changed, 34 insertions(+) (limited to 'security') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 01c46f292e68..4d2f104184c7 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -34,6 +34,40 @@ Note: Please add new entries to the beginning of this file. --> + + kvirc -- multiple vulnerabilities + + + kvirc + kvirc-devel + 4.0.0 + + + + +

Two security vulnerabilities have been discovered:

+
+

Multiple format string vulnerabilities in the DCC functionality + in KVIrc 3.4 and 4.0 have unspecified impact and remote attack vectors.

+
+
+

Directory traversal vulnerability in the DCC functionality + in KVIrc 3.4 and 4.0 allows remote attackers to overwrite + arbitrary files via unknown vectors.

+
+ +
+ + CVE-2010-2451 + CVE-2010-2452 + http://lists.omnikron.net/pipermail/kvirc/2010-May/000867.html + + + 2010-05-17 + 2010-06-30 + +
+ png -- libpng decompression buffer overflow -- cgit