CVE-2013-0238
ircd-hybrid - denial of service
EPSS 10.0%
Description
The try_parse_v4_netmask function in hostmask.c in IRCD-Hybrid before 8.0.6 does not properly validate masks, which allows remote attackers to cause a denial of service (crash) via a mask that causes a negative number to be parsed.
How to fix CVE-2013-0238
To remediate CVE-2013-0238, upgrade the affected package to a fixed version below.
- Debian/ircd-hybrid—upgrade to 1:7.2.2.dfsg.2-10 or later
- Debian/ircd-hybrid—upgrade to 1:7.2.2.dfsg.2-6.2+squeeze1 or later
Is CVE-2013-0238 being exploited?
Moderate — EPSS is 10.0%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (2)
- from 0, < 1:7.2.2.dfsg.2-10
- from 0, < 1:7.2.2.dfsg.2-6.2+squeeze1