{ "schema_version": "1.4.0", "id": "GHSA-3fv4-6wvg-x83x", "modified": "2022-02-24T00:01:13Z", "published": "2022-02-15T00:02:47Z", "aliases": [ "CVE-2022-24976" ], "details": "Atheme IRC Services before 7.2.12, when used in conjunction with InspIRCd, allows authentication bypass by ending an IRC handshake at a certain point during a challenge-response login sequence.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24976" }, { "type": "WEB", "url": "https://github.com/atheme/atheme/commit/4e664c75d0b280a052eb8b5e81aa41944e593c52" }, { "type": "WEB", "url": "https://github.com/atheme/atheme/compare/v7.2.11...v7.2.12" }, { "type": "WEB", "url": "https://www.openwall.com/lists/oss-security/2022/01/30/4" } ], "database_specific": { "cwe_ids": [ "CWE-287" ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2022-02-14T12:15:00Z" } }