<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – UnrealIRCd (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/unrealircd.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/unrealircd-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – UnrealIRCd (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:08 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2023-50784 – A buffer overflow in websockets in UnrealIRCd 6.1.0 through 6.1.3 before 6.1.4 a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-50784</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-50784</guid>
    <pubDate>Sat, 16 Dec 2023 23:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-50784</strong></p>
  <p>A buffer overflow in websockets in UnrealIRCd 6.1.0 through 6.1.3 before 6.1.4 allows an unauthenticated remote attacker to crash the server by sending an oversized packet (if a websocket port is open). Remote code execution might be possible on some uncommon, older platforms.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-50784">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-7144 – The m_authenticate function in modules/m_sasl.c in UnrealIRCd before 3.2.10.7 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-7144</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-7144</guid>
    <pubDate>Wed, 18 Jan 2017 17:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-7144</strong></p>
  <p>The m_authenticate function in modules/m_sasl.c in UnrealIRCd before 3.2.10.7 and 4.x before 4.0.6 allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted AUTHENTICATE parameter.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-7144">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2010-2075 – UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-2075</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-2075</guid>
    <pubDate>Tue, 15 Jun 2010 14:04:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2010-2075</strong></p>
  <p>UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally introduced modification (Trojan Horse) in the DEBUG3_DOLOG_SYSTEM macro, which allows remote attackers to execute arbitrary commands.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-2075">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
