CVE-2000-0594 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 9.9% (pctl 95)
Patch early
A public exploit exists.
Description
BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
| EPSS | 9.87% — more likely to be exploited than 95% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2000-07-04 |
| Last modified | 2026-06-16 |
Affected (6)
| Vendor | Product |
|---|---|
| caldera | openlinux desktop |
| caldera | openlinux ebuilder |
| caldera | openlinux edesktop |
| caldera | openlinux eserver |
| freebsd | freebsd |
| mandrakesoft | mandrake linux |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | BitchX IRC Client 75p1/75p3/1.0 c16 - '/INVITE' Format String | 2000-07-05 |
References
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0026.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0098.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0105.html
- http://archives.neohapsis.com/archives/freebsd/2000-07/0042.html
- http://archives.neohapsis.com/archives/vuln-dev/2000-q3/0018.html
- http://www.calderasystems.com/support/security/advisories/CSSA-2000-022.0.txt
- http://www.redhat.com/support/errata/RHSA-2000-042.html
- http://www.securityfocus.com/bid/1436
- https://exchange.xforce.ibmcloud.com/vulnerabilities/4897
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0026.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0098.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0105.html
- http://archives.neohapsis.com/archives/freebsd/2000-07/0042.html
- http://archives.neohapsis.com/archives/vuln-dev/2000-q3/0018.html
- http://www.calderasystems.com/support/security/advisories/CSSA-2000-022.0.txt
- http://www.redhat.com/support/errata/RHSA-2000-042.html
- http://www.securityfocus.com/bid/1436
- https://exchange.xforce.ibmcloud.com/vulnerabilities/4897
→ the Explorer · watch your stack · NVD