This is the new home of the egghelp.org community forum.
All data has been migrated (including user logins/passwords) to a new phpBB version.


For more information, see this announcement post. Click the X in the top right-corner of this box to dismiss this message.

eggdrop exploits

Old posts that have not been replied to for several years.
Locked
n
nsignific

Post by nsignific »

Well here's the thing. I'm running all sorts of eggdrop versions on a lot of different machines, and am now wondering if there's a list of known exploits and fixes for them somewhere? i'm in the process of patching my systems... any help will be greatly appreciated. thank you!
P
Petersen
Owner
Posts: 685
Joined: Thu Sep 27, 2001 8:00 pm
Location: Blackpool, UK

Post by Petersen »

Remote exploits are just about non-existant, and the few local bugs mainly require enough flags that anyone trying to exploit it would have enough access already (and the most they could do is crash it). Most exploits are through badly written scripts, to which the only way to be sure about them is for you to security check them yourself.
g
guppy
eggdrop engineer
Posts: 199
Joined: Mon Sep 24, 2001 8:00 pm
Location: Canada
Contact:

Post by guppy »

Remote exploits? None have been found in 1.6.x so far .. 1.4.1 I believe had a slight possibility of a remote crash if use-telnet-banner was turned on (very remote) .. other than that .. I can't think of any others ... 1.1.5 however had a few but I forget what they were.

Jeff
n
nsignific

Post by nsignific »

thank you. that's one potential security hole down, and many more to go =)
Locked