Bugzilla – Bug 54184
VUL-0: CVE-2004-0409: Buffer overflow in Xchat SOCKS5 code
Last modified: 2021-10-09 09:03:35 UTC
CAN-2004-0409 http://mail.nl.linux.org/xchat-announce/2004-04/msg00000.html Is this something for us?
<!-- SBZ_reproduce --> ...
Do we want to issue updates for older dists?
Yes.
- unsigned char buf[10]; + unsigned char buf[260]; Such tiny change ... so much work ... I'll have them all done by the end of today.
Don't forget SLES7-PPC aka 7.3 ;-)
Submitted for 8.0, 8.1, 8.2, 9.0 and 9.1. Patchinfos for the box and the products have also been made.
Michael, it's not in is_maintained :)
right. sorry.
packages approve
CVE-2004-0409: CVSS v2 Base Score: 7.5 (AV:N/AC:L/Au:N/C:P/I:P/A:P)