NULL pointer dereference in dircproxy - CVE-2007-5226
Published: June 25, 2020
dircproxy
w8tvi
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error in irc_server.c in dircproxy. A remote attacker can trigger denial of service conditions via an ACTION command without a parameter, which triggers a NULL pointer dereference, as demonstrated using a blank /me message from irssi.