CVE-2013-0238: Ircd-Hybrid

Medium severity, CVSS 5.0. EPSS: 10% chance of exploitation in the next 30 days.

The try_parse_v4_netmask function in hostmask.c in IRCD-Hybrid before 8.0.6 does not properly validate masks, which allows remote attackers to cause a denial of service (crash) via a mask that causes a negative number to be parsed.

Affected products

  • Ircd-Hybrid Ircd-Hybrid: up to and including 8.0.5; version 7.2.0 only; version 7.2.1 only; version 7.2.2 only; version 7.2.3 only; version 7.3.0 only; …

Published 2013-02-13. Last modified 2026-06-16.