CVE-2007-2651

Multiple off-by-one errors in VooDoo cIRCle before 1.1.beta27 allow remote attackers to cause a denial of service (connection loss) or possibly execute arbitrary code via a (1) DNS name response of the exact length as a buffer; or a long (2) channel name, (3) partyline channel name, or unspecified vectors in crafted BOTNET packets.

Date published : 2007-05-14

http://www.securityfocus.com/bid/23929

http://sourceforge.net/project/shownotes.php?release_id=497807&group_id=116847