CVE-2015-8702: Debian Linux

High severity, CVSS 8.6. EPSS: 2.3% chance of exploitation in the next 30 days.

The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause a denial of service (netsplit) via an invalid character in a PTR response, as demonstrated by a "\032" (whitespace) character in a hostname.

Affected products

  • Debian Debian Linux: version 7.0 only; version 8.0 only
  • Inspircd Inspircd: up to and including 2.0.18

Published 2016-04-12. Last modified 2026-06-17.