KVIrc '\r' Carriage Return in DCC Handshake Remote Command Execution Vulnerability

Bugtraq ID: 42026
Class: Input Validation Error
CVE: CVE-2010-2785
Remote: Yes
Local: No
Published: Jul 28 2010 12:00AM
Updated: Aug 17 2010 07:54PM
Credit: unic0rn
Vulnerable: SuSE openSUSE 11.3
S.u.S.E. openSUSE 11.2
S.u.S.E. openSUSE 11.1
Red Hat Fedora 13
Red Hat Fedora 12
Pardus Linux 2009 0
KVIrc KVirc 4.0
KVIrc KVirc 3.4.2
KVIrc KVirc 3.4
KVIrc KVirc 3.2.5
KVIrc KVirc 3.2
Debian Linux 5.0 sparc
Debian Linux 5.0 s/390
Debian Linux 5.0 powerpc
Debian Linux 5.0 mipsel
Debian Linux 5.0 mips
Debian Linux 5.0 m68k
Debian Linux 5.0 ia-64
Debian Linux 5.0 ia-32
Debian Linux 5.0 hppa
Debian Linux 5.0 armel
Debian Linux 5.0 arm
Debian Linux 5.0 amd64
Debian Linux 5.0 alpha
Debian Linux 5.0
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus