Barton develops ngircd, a lightweight Internet Relay Chat daemon that handles parsing and protocol state management in a networked messaging context, where its disclosed vulnerabilities center on input-validation and numeric-handling weaknesses including improper input validation, integer underflow, and out-of-bounds reads. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Barton over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-0199CRITICAL Integer underflow in the Lists_MakeMask() function in lists.c in ngIRCd before 0.8.2 allows remote attackers to cause a denial of service (application crash) and possibly execute a | May 2, 2005 | 9.8 | 51 | NO | YES |
CVE-2020-14148HIGH The Server-Server protocol implementation in ngIRCd before 26~rc2 allows an out-of-bounds access, as demonstrated by the IRC_NJOIN() function. | Jun 15, 2020 | 7.5 | 25 | NO | NO |
CVE-2013-5580MEDIUM The (1) Conn_StartLogin and (2) cb_Read_Resolver_Result functions in conn.c in ngIRCd 18 through 20.2, when the configuration option NoticeAuth is enabled, does not properly handle | Oct 1, 2013 | 4.3 | 16 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Barton.
Media articles that mention a CVE ID that affects a product developed by Barton — matched by CVE ID, not by vendor name.