Candidate: CVE-2010-1147 PublicDate: 2010-04-06 16:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1147 Description: Stack-based buffer overflow in Open Direct Connect Hub (aka Open DC Hub or OpenDCHub) 0.8.1 allows remote authenticated users to execute arbitrary code via a long MyINFO message. Ubuntu-Description: Notes: kees> "high" for dapper since it lacks stack protections. Bugs: https://launchpad.net/bugs/576507 Priority: medium Priority_opendchub_dapper: high Discovered-by: Assigned-to: CVSS: Patches_opendchub: upstream: http://opendchub.svn.sourceforge.net/viewvc/opendchub?view=revision&sortby=date&revision=26 upstream_opendchub: released (0.8.1) dapper_opendchub: ignored (reached end-of-life) hardy_opendchub: ignored (reached end-of-life) intrepid_opendchub: needed (reached end-of-life) jaunty_opendchub: ignored (reached end-of-life) karmic_opendchub: ignored (reached end-of-life) lucid_opendchub: ignored (reached end-of-life) maverick_opendchub: not-affected (0.8.2-2) natty_opendchub: not-affected (0.8.2-2) oneiric_opendchub: not-affected (0.8.2-2) precise_opendchub: DNE quantal_opendchub: DNE raring_opendchub: DNE saucy_opendchub: DNE devel_opendchub: DNE