[Pkg-kde-extras] Bug#503401: try to start command via irc:// handler

Jan Wagner waja at cyconet.org
Sat Oct 25 17:00:28 UTC 2008


Package: kvirc
Version: 3.4.0
Severity: serious
Tags: security

--- Please enter the report below this line. ---

There is an exploit outside which trys to start commands via irc handler. 
Dunno if there older versions which are also vuln. Maybe you will also adjust 
the severity.

http://www.milw0rm.com/exploits/6832

With kind regards, Jan.
-- 
Never write mail to <waja at spamfalle.info>, you have been warned!
-----BEGIN GEEK CODE BLOCK-----
Version: 3.1
GIT d-- s+: a- C+++ UL++++ P+ L+++ E- W+++ N+++ o++ K++ w--- O M V- PS PE
Y++ PGP++ t-- 5 X R tv- b+ DI- D++ G++ e++ h-- r+++ y+++
------END GEEK CODE BLOCK------
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/pkg-kde-extras/attachments/20081025/df17c07c/attachment.pgp 


More information about the pkg-kde-extras mailing list