Unrated severityNVD Advisory· Published Feb 26, 2010· Updated Apr 29, 2026
CVE-2009-4652
CVE-2009-4652
Description
The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in src/ngircd/conn.c in ngIRCd 13 and 14, when SSL/TLS support is present and standalone mode is disabled, allow remote attackers to cause a denial of service (application crash) by sending the MOTD command from another server in the same IRC network, possibly related to an array index error.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.securityfocus.com/bid/37021nvdExploit
- ngircd.barton.de/doc/NEWSnvdVendor Advisory
- secunia.com/advisories/37343nvdVendor Advisory
- www.vupen.com/english/advisories/2009/3240nvdVendor Advisory
- arthur.barton.de/cgi-bin/gitweb.cginvd
- arthur.barton.de/cgi-bin/gitweb.cginvd
- ngircd.barton.de/doc/ChangeLognvd
- exchange.xforce.ibmcloud.com/vulnerabilities/54272nvd
News mentions
0No linked articles in our index yet.