OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: BitchX /ignore bug
From: nohicanMARCELLA.NIETS.ORG
Date: Wed Jul 05 2000 - 08:05:43 CDT


This is *real* bug and you *should* patch asap, it is failry easily
possible to disconnect people (eg: sigsev their BitchX). It should
be possible (thought tricky) to execute remote commands. (Once again
a reason why you should not irc as root).

I have the slight suspicion this isn't the only issue in BitchX.

Kind Regards,
Joost Pol aka Nohican
Root66

- Do not underestimate the power of stupid people in large groups.

> If I read this correctly, this is not an attack perse, but a self
> annihilation is it not? and while a bug, not something one can use to
> take others ofline or server, please correct me if I read this wrong.
>
> Thanks,
>
> Ron DuFresne