« Volver al listado

CVE-2013-7384

Estado: ModificadaMedia (5)—

UnrealIRCd 3.2.10 before 3.2.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via unspecified vectors, related to SSL. NOTE: this issue was SPLIT from CVE-2013-6413 per ADT2 due to different vulnerability types.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2013-7384",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2014-05-19T14:55:10.047",
  "references": [
    {
      "url": "http://forums.unrealircd.com/viewtopic.php?f=2&t=8221",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://seclists.org/oss-sec/2013/q4/379",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://seclists.org/oss-sec/2013/q4/383",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.unrealircd.com/txt/unreal3_2_10_2_release_notes.txt",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://forums.unrealircd.com/viewtopic.php?f=2&t=8221",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://seclists.org/oss-sec/2013/q4/379",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://seclists.org/oss-sec/2013/q4/383",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.unrealircd.com/txt/unreal3_2_10_2_release_notes.txt",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "UnrealIRCd 3.2.10 before 3.2.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via unspecified vectors, related to SSL.  NOTE: this issue was SPLIT from CVE-2013-6413 per ADT2 due to different vulnerability types."
    },
    {
      "lang": "es",
      "value": "UnrealIRCd 3.2.10 anterior a 3.2.10.2 permite a atacantes remotos causar una denegación de servicio (referencia en puntero nulo y caída) a través de vectores no especificados, relacionado con SSL. NOTA: este problema fue dividido (SPLIT) de CVE-2013-6413 por ADT2 debido a tipos diferentes de vulnerabilidad."
    }
  ],
  "lastModified": "2026-06-17T00:01:52.403",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:unrealircd:unrealircd:3.2.10:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CDDFB2BC-E10C-4F8A-829E-F63F9146EF73"
            },
            {
              "criteria": "cpe:2.3:a:unrealircd:unrealircd:3.2.10.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "09D6AD81-3B0C-4205-A91B-734E78B88457"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "evaluatorComment": "Per: http://cwe.mitre.org/data/definitions/476.html\n\n\"CWE-476: NULL Pointer Dereference\"",
  "sourceIdentifier": "cve@mitre.org"
}