ctcphandler.cpp in Quassel before 0.6.3 and 0.7.x before 0.7.1 allows remote attackers to cause a denial of service (unresponsive IRC) via multiple Client-To-Client Protocol (CTCP) requests in a PRIVMSG message.
| Software | From | Fixed in |
|---|---|---|
| quassel-irc / quassel_irc | 0.4.1 | 0.4.1.x |
| quassel-irc / quassel_irc | 0.3.0.1 | 0.3.0.1.x |
| quassel-irc / quassel_irc | 0.4.3 | 0.4.3.x |
| quassel-irc / quassel_irc | 0.3.0.3 | 0.3.0.3.x |
| quassel-irc / quassel_irc | 0.3.0 | 0.3.0.x |
| quassel-irc / quassel_irc | 0.1.0 | 0.1.0.x |
| quassel-irc / quassel_irc | - | 0.6.2.x |
| quassel-irc / quassel_irc | 0.5.0 | 0.5.0.x |
| quassel-irc / quassel_irc | 0.6.1 | 0.6.1.x |
| quassel-irc / quassel_irc | 0.3.1 | 0.3.1.x |
| quassel-irc / quassel_irc | 0.7.0 | 0.7.0.x |
| quassel-irc / quassel_irc | 0.4.0 | 0.4.0.x |
| quassel-irc / quassel_irc | 0.3.0.2 | 0.3.0.2.x |
| quassel-irc / quassel_irc | 0.4.2 | 0.4.2.x |
| canonical / ubuntu_linux | 9.04 | 9.04.x |
| canonical / ubuntu_linux | 10.04 | 10.04.x |
| canonical / ubuntu_linux | 9.10 | 9.10.x |