← Back

Ngircd

ngircd

5 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Ngircd
ngircd

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ngircd
1Ngircd
Apr 29, 2026
Mar 28, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
channel.c in ngIRCd 20 and 20.1 allows remote attackers to cause a denial of service (assertion failure and crash) via a KICK command for a user who is not on the associated channel.
1Ngircd
1Ngircd
Apr 29, 2026
Feb 26, 2010
N/A· v4
N/A· v3
2.6 LOW· v2
The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in src/ngircd/conn.c in ngIRCd 13 and 14, when SSL/TLS support is present and standalone mode is disabled, allow remote attackers to cause a denial of service (ap...Show more
The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in src/ngircd/conn.c in ngIRCd 13 and 14, when SSL/TLS support is present and standalone mode is disabled, allow remote attackers to cause a denial of service (application crash) by sending the MOTD command from another server in the same IRC network, possibly related to an array index error.Show less
1Ngircd
1Ngircd
Apr 23, 2026
Jan 16, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
ngIRCd 0.10.x before 0.10.4 and 0.11.0 before 0.11.0-pre2 allows remote attackers to cause a denial of service (crash) via crafted IRC PART message, which triggers an invalid dereference.
1Ngircd
1Ngircd
Apr 23, 2026
Nov 20, 2007
N/A· v4
N/A· v3
5.0 MEDIUM· v2
irc-channel.c in ngIRCd before 0.10.3 allows remote attackers to cause a denial of service (crash) via a JOIN command without a channel argument.
1Ngircd
1Ngircd
Apr 16, 2026
Feb 3, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT, logging to SYSLOG, and with DEBUG enabled, allows remote attackers to execute arbitrary code.