Back to Database
Status published
Medium
CVE-2007-2807
Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop 1.6.18, and possibly...
Vulnerability Description
Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop 1.6.18, and possibly earlier, allows user-assisted, remote IRC servers to execute arbitrary code via a long private message.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-2807
Credits & Attribution
No credits recorded in the NVD database.
References
- http://secunia.com/advisories/25276
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:175
- http://www.securityfocus.com/bid/24070
- http://security.gentoo.org/glsa/glsa-200709-07.xml
- http://secunia.com/advisories/27989
- https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00348.html
- http://secunia.com/advisories/26826
- http://secunia.com/advisories/35690
- http://secunia.com/advisories/28347
- http://securitytracker.com/id?1018700
- http://secunia.com/advisories/26727
- http://www.eggheads.org/bugzilla/show_bug.cgi?id=462
- http://www.debian.org/security/2008/dsa-1448
- http://osvdb.org/36237
- https://www.redhat.com/archives/fedora-package-announce/2007-December/msg00336.html
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=427157
- http://www.debian.org/security/2009/dsa-1826
More from eggheads
View All →Affected Vendor
eggheads
View all reports →Affected Software
eggdrop irc bot
Vulnerable Versions:
0, 1.6.8, 1.6.9, 1.6.10, 1.6.11, 1.6.12, 1.6.13, 1.6.14, 1.6.15, 1.6.16, 1.6.17
Timeline
Official Publish:
May 22nd, 2007
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.