Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Tue, 29 Dec 2015 07:32:07 -0600
From: Mark Felder <feld@...d.me>
To: oss-security@...ts.openwall.com
Subject: Inspircd <2.0.19 DoS

Inspircd <2.0.19 has a DoS caused by PTR lookup of connecting users.

>From their changelog: "...including a fix for a bug which allowed
malformed DNS records to cause netsplits on a network. Triggering this
issue is non-trivial and it may not occur in all circumstances, but all
users are advised to upgrade."

http://www.inspircd.org/2015/04/16/v2019-released.html

Relevant commit:
https://github.com/inspircd/inspircd/commit/6058483d9fbc1b904d5ae7cfea47bfcde5c5b559

-- 
  Mark Felder
  feld@...d.me

Powered by blists - more mailing lists

Your e-mail address:

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ