*** This bug is a security vulnerability ***

Public security bug reported:

Binary package hint: kvirc

>From the Debian advisory http://www.debian.org/security/2010/dsa-2065 :
Two security issues have been discovered in the DCC protocol support code of 
kvirc, a KDE-based next generation IRC client, which allow the overwriting of 
local files through directory traversal and the execution of arbitrary code 
through a format string attack.

Already fixed in 4.0.0~rc3 in maverick.

** Affects: kvirc (Ubuntu)
     Importance: Undecided
         Status: New

** Visibility changed to: Public

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2010-2451

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2010-2452

-- 
CVE-2010-2451, CVE-2010-2452 Multiple vulnerabilities in DCC
https://bugs.launchpad.net/bugs/601702
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to