mIRC 6.35 gets released, fixes security flaw

Little over one month after the last release of the popular IRC-client, a new version becomes public.

According to the website the update is due to a security flaw concerning “very long nicknames on non-standard servers” and it is therefore a recommended upgrade for everyone.

Also, it seems the exploit code for the mentioned vulnerability is already in the wild so it’s advised to update in a timely manner or deploy the following workaround if an upgrade is not possible:

on ^*:OPEN:?:*:if ($len($nick) > 298) halt

The above snippet should be added to ones mIRC’s remotes and shall then prevent the hole from being exploited.

Thanks to slakker for the tip & links!

Related posts:

  1. phpDenora fixes XSS vulnerability After getting notified about a Cross-site scripting vulnerability in phpDenora...
  2. mIRC 6.34 has been released 4 days ago, Khaled Mardam-Bey released a new version of...
  3. mIRC Local DCC Issue: Exploit, Vulnerability or Neither? mIRC has seen issues with DCC exploits in the past....
  4. mIRC 6.32 Released Version 6.32 of probably the most popular IRC client have...
  5. Nettalk fixes crash bug and releases 6.6.4 Nettalk, an opensource IRC client available for Windows, was updated...

http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/digg_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/reddit_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/dzone_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/stumbleupon_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/delicious_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/blinklist_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/blogmarks_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/newsvine_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/technorati_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/google_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/myspace_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/facebook_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/yahoobuzz_48.png http://www.irc-junkie.org/wp-content/plugins/sociofluid/images/twitter_48.png

Tags: , , ,

Leave a Reply