Public bug reported:

Binary package hint: xchat

#ubuntu is regularly attacked by a well known exploit via ctcp.
Users with vulnerable routers can find their irc connection drop or sometimes 
affect the router. As well as being disruptive to the user, it disrupts the 
channel with the join/part messages.

Only connections to irc on port 6667 can be exploited. Freenode allows
connections on several other ports and we usually suggest
irc.ubuntu.com/8001

https://help.ubuntu.com/community/FixDCCExploit is the page we currently
show to affected users.

The settings for the default connection when xchat is started up should
be changed to irc.ubuntu.com/8001

** Affects: xchat (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: xchat-gnome (Ubuntu)
     Importance: Undecided
         Status: New

** Also affects: xchat-gnome (Ubuntu)
   Importance: Undecided
       Status: New

** Description changed:

  Binary package hint: xchat
  
  #ubuntu is regularly attacked by a well known exploit via ctcp.
- Users with vulnerable routers can find their irc connection drop or sometimes 
affect the user. As well as being disruptive to the user, it disrupts the 
channel with the join/part messages.
+ Users with vulnerable routers can find their irc connection drop or sometimes 
affect the router. As well as being disruptive to the user, it disrupts the 
channel with the join/part messages.
  
  Only connections to irc on port 6667 can be exploited. Freenode allows
  connections on several other ports and we usually suggest
  irc.ubuntu.com/8001
  
  https://help.ubuntu.com/community/FixDCCExploit is the page we currently
  show to affected users.

** Description changed:

  Binary package hint: xchat
  
  #ubuntu is regularly attacked by a well known exploit via ctcp.
  Users with vulnerable routers can find their irc connection drop or sometimes 
affect the router. As well as being disruptive to the user, it disrupts the 
channel with the join/part messages.
  
  Only connections to irc on port 6667 can be exploited. Freenode allows
  connections on several other ports and we usually suggest
  irc.ubuntu.com/8001
  
  https://help.ubuntu.com/community/FixDCCExploit is the page we currently
  show to affected users.
+ 
+ The settings for the default connection when xchat is started up should
+ be changed to irc.ubuntu.com/8001

-- 
To prevent dcc exploit, default port should be 8001 for irc.ubuntu.com
https://bugs.launchpad.net/bugs/191691
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to