Summary: | net-irc/unrealircd-3.2.8.1 backdoored (CVE-2010-2075) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Stefan Behte (RETIRED) <craig> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED DUPLICATE | ||
Severity: | normal | CC: | net-irc |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://www.unrealircd.com/txt/unrealsecadvisory.20100612.txt | ||
Whiteboard: | |||
Package list: | Runtime testing required: | --- |
Description
Stefan Behte (RETIRED)
2010-06-12 19:36:21 UTC
*** This bug has been marked as a duplicate of bug 323691 *** CVE-2010-2075 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-2075): UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally introduced modification (Trojan Horse) in the DEBUG3_DOLOG_SYSTEM macro, which allows remote attackers to execute arbitrary commands. |