Vulnerability Description
Format string vulnerability in HydraIRC 0.3.151 allows remote attackers to cause a denial of service via format string specifiers in certain data related to failed DCC file transfer negotiation.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hydrairc | Hydrairc | 0.3.151 |
References
- http://osvdb.org/38623
- http://www.portcullis-security.com/uplds/advisories/HydraIRC_fmt-07_008.txt
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35409
- http://osvdb.org/38623
- http://www.portcullis-security.com/uplds/advisories/HydraIRC_fmt-07_008.txt
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35409
FAQ
What is CVE-2007-3836?
CVE-2007-3836 is a vulnerability with a CVSS score of 7.8 (HIGH). Format string vulnerability in HydraIRC 0.3.151 allows remote attackers to cause a denial of service via format string specifiers in certain data related to failed DCC file transfer negotiation.
How severe is CVE-2007-3836?
CVE-2007-3836 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-3836?
Check the references section above for vendor advisories and patch information. Affected products include: Hydrairc Hydrairc.