Vulnerability Details CVE-2020-25269
An issue was discovered in InspIRCd 2 before 2.0.29 and 3 before 3.6.0. The pgsql module contains a use after free vulnerability. When combined with the sqlauth or sqloper modules, this vulnerability can be used for remote crashing of an InspIRCd server by any user able to connect to a server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 78.4%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 6.8
Products affected by CVE-2020-25269
-
cpe:2.3:a:inspircd:inspircd:2.0.0
-
cpe:2.3:a:inspircd:inspircd:2.0.1
-
cpe:2.3:a:inspircd:inspircd:2.0.10
-
cpe:2.3:a:inspircd:inspircd:2.0.11
-
cpe:2.3:a:inspircd:inspircd:2.0.12
-
cpe:2.3:a:inspircd:inspircd:2.0.13
-
cpe:2.3:a:inspircd:inspircd:2.0.14
-
cpe:2.3:a:inspircd:inspircd:2.0.15
-
cpe:2.3:a:inspircd:inspircd:2.0.16
-
cpe:2.3:a:inspircd:inspircd:2.0.17
-
cpe:2.3:a:inspircd:inspircd:2.0.18
-
cpe:2.3:a:inspircd:inspircd:2.0.19
-
cpe:2.3:a:inspircd:inspircd:2.0.2
-
cpe:2.3:a:inspircd:inspircd:2.0.20
-
cpe:2.3:a:inspircd:inspircd:2.0.21
-
cpe:2.3:a:inspircd:inspircd:2.0.22
-
cpe:2.3:a:inspircd:inspircd:2.0.23
-
cpe:2.3:a:inspircd:inspircd:2.0.24
-
cpe:2.3:a:inspircd:inspircd:2.0.25
-
cpe:2.3:a:inspircd:inspircd:2.0.26
-
cpe:2.3:a:inspircd:inspircd:2.0.27
-
cpe:2.3:a:inspircd:inspircd:2.0.28
-
cpe:2.3:a:inspircd:inspircd:2.0.3
-
cpe:2.3:a:inspircd:inspircd:2.0.4
-
cpe:2.3:a:inspircd:inspircd:2.0.5
-
cpe:2.3:a:inspircd:inspircd:2.0.6
-
cpe:2.3:a:inspircd:inspircd:2.0.7
-
cpe:2.3:a:inspircd:inspircd:2.0.8
-
cpe:2.3:a:inspircd:inspircd:2.0.9
-
cpe:2.3:a:inspircd:inspircd:3.0.0
-
cpe:2.3:a:inspircd:inspircd:3.0.1
-
cpe:2.3:a:inspircd:inspircd:3.1.0
-
cpe:2.3:a:inspircd:inspircd:3.2.0
-
cpe:2.3:a:inspircd:inspircd:3.3.0
-
cpe:2.3:a:inspircd:inspircd:3.4.0
-
cpe:2.3:a:inspircd:inspircd:3.5.0
-
cpe:2.3:o:debian:debian_linux:10.0
-
cpe:2.3:o:debian:debian_linux:9.0