PublicDate: 2007-06-22 18:30:00 UTC Candidate: CVE-2007-3360 References: https://bugs.launchpad.net/ubuntu/+source/ircii-pana/+bug/129771 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3360 Description: hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands. Ubuntu-Description: Notes: jdstrand> debdiff in LP Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: dapper_ircii-pana: released (1:1.1-4ubuntu0.1) edgy_ircii-pana: released (1:1.1-4ubuntu1.1) feisty_ircii-pana: released (1:1.1-4ubuntu2.1) devel_ircii-pana: released (1:1.1-4ubuntu4) upstream_ircii-pana: needs-triage