Vulnerability Description
inspircd in Debian before 2.0.7 does not properly handle unsigned integers. NOTE: This vulnerability exists because of an incomplete fix to CVE-2012-1836.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Inspircd | Inspircd | <= 2.0.5 |
Related Weaknesses (CWE)
References
- http://www.debian.org/security/2015/dsa-3226Third Party Advisory
- http://www.openwall.com/lists/oss-security/2015/08/26/1Mailing ListThird Party Advisory
- https://github.com/inspircd/inspircd/commit/ed28c1ba666b39581adb860bf51cdde43c84PatchVendor Advisory
- http://www.debian.org/security/2015/dsa-3226Third Party Advisory
- http://www.openwall.com/lists/oss-security/2015/08/26/1Mailing ListThird Party Advisory
- https://github.com/inspircd/inspircd/commit/ed28c1ba666b39581adb860bf51cdde43c84PatchVendor Advisory
FAQ
What is CVE-2012-6696?
CVE-2012-6696 is a vulnerability with a CVSS score of 9.8 (CRITICAL). inspircd in Debian before 2.0.7 does not properly handle unsigned integers. NOTE: This vulnerability exists because of an incomplete fix to CVE-2012-1836.
How severe is CVE-2012-6696?
CVE-2012-6696 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2012-6696?
Check the references section above for vendor advisories and patch information. Affected products include: Inspircd Inspircd.