CVE

Id
93962  
CVE No.
CVE-2016-7142  
Status
Candidate  
Description
The m_sasl module in InspIRCd before 2.0.23, when used with a service that supports SASL_EXTERNAL authentication, allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted SASL message.  
Phase
Assigned (20160905)  
Votes
None (candidate not yet proposed)  
Comments