Lines 34-39
Link Here
|
34 |
|
34 |
|
35 |
--> |
35 |
--> |
36 |
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1"> |
36 |
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1"> |
|
|
37 |
<vuln vid="7a53b700-0a1e-11df-9e9c-004095308322"> |
38 |
<topic>ircd-ratbox -- Multiple Denial of Service Vulnerabilities</topic> |
39 |
<affects> |
40 |
<package> |
41 |
<name>ircd-ratbox</name> |
42 |
<range><le>2.2.8</le></range> |
43 |
</package> |
44 |
<package> |
45 |
<name>ircd-ratbox-devel</name> |
46 |
<range><le>3.0.5</le></range> |
47 |
</package> |
48 |
</affects> |
49 |
<description> |
50 |
<body xmlns="http://www.w3.org/1999/xhtml"> |
51 |
<p>Two user-triggerable crashes have been identified in ircd-ratbox's |
52 |
current branches:</p> |
53 |
<blockquote> |
54 |
<p>The first affects the /quote HELP module and allows a user to |
55 |
trigger an IRCD crash on some platforms.</p> |
56 |
<p>The second affects the /links processing module when the |
57 |
flatten_links configuration option is not enabled.</p> |
58 |
<p>Both of these issues have been corrected in the most recent |
59 |
ircd-ratbox-2.2.9 and ircd-ratbox-3.0.6 releases for their |
60 |
respective branches. As a temporary work-around, the m_help.so |
61 |
and m_links.so modules can be unloaded until the IRCD itself can |
62 |
be upgraded.</p> |
63 |
</blockquote> |
64 |
</body> |
65 |
</description> |
66 |
<references> |
67 |
<url>http://lists.ratbox.org/pipermail/ircd-ratbox/2010-January/000891.html</url> |
68 |
<url>http://lists.ratbox.org/pipermail/ircd-ratbox/2010-January/000892.html</url> |
69 |
</references> |
70 |
<dates> |
71 |
<discovery>2010-01-26</discovery> |
72 |
<entry>2010-01-26</entry> |
73 |
</dates> |
74 |
</vuln> |
75 |
|
37 |
<vuln vid="848539dc-0458-11df-8dd7-002170daae37"> |
76 |
<vuln vid="848539dc-0458-11df-8dd7-002170daae37"> |
38 |
<topic>dokuwiki -- multiple vulnerabilities</topic> |
77 |
<topic>dokuwiki -- multiple vulnerabilities</topic> |
39 |
<affects> |
78 |
<affects> |