aboutsummaryrefslogtreecommitdiffstats
path: root/english/lts/security/2016/dla-384.wml
blob: 11594b25326ba2029e73772a77e24aa5dfd8dda1 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
<define-tag description>LTS security update</define-tag>
<define-tag moreinfo>
<p>It was discovered that InspIRCd did not validate the names in DNS
responses before using them in inter-server communication.  A remote
attacker controlling the reverse DNS server for an IRC client could
use this for denial of service or possibly for privilege escalation on
the IRC network.</p>

<p>InspIRCd appears to have been completely unusable since version
1.1.22+dfsg-4+squeeze1 due to a bug in its build system triggered by
(e)glibc versions newer than 2.9.  This has also been fixed.</p>
</define-tag>

# do not modify the following line
#include "$(ENGLISHDIR)/lts/security/2016/dla-384.data"
# $Id$

© 2014-2024 Faster IT GmbH | imprint | privacy policy