n Tue, 04 Jul 2000, Rick Jansen wrote:
> I don't know whether this is the right place to put it, but i'm going to
> anyway :)
> 
> Because of a simple /invite nickname #%s%s%s%s%s%s%s%s%s, BitchX will
> segfault and coredump. This is a small programming error, you can find a
> patch at this location:
> http://root66.org/karin/BitchX-bug-patch-3-juli-2000.tar.gz by Frank van
> Vliet, alias {}.
> 
> AFAIK, v1.0c16 is vulnerable, other versions may be vulnerable as well.
> 

Yes, I posted this to the list this morning : )

And yes 1.0c16 is vulnerable as well, there's a patch for both, sift through 
the post from earlier today.

I'm out now, it's july 4th or something


-- 
Bryan Paxton

"How should I know if it works? That's what beta testers are for. I
          only coded it."
 -- Linus Torvalds.

Public key can be found at http://speedbros.org/Bryan_Paxton.asc

Reply via email to