Ircd Hybrid is a lightweight, standards-focused Internet Relay Chat daemon that remains deployed across niche IRC networks and community servers despite the shift toward modern messaging platforms. The vendor's vulnerability surface is narrow and concentrated in the core ircd_hybrid product itself, reflecting the focused scope of the software's function and its modest contemporary footprint. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ircd Hybrid over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-0238MEDIUM The try_parse_v4_netmask function in hostmask.c in IRCD-Hybrid before 8.0.6 does not properly validate masks, which allows remote attackers to cause a denial of service (crash) via | Feb 13, 2013 | 5.0 | 31 | NO | YES |
CVE-2004-0605MEDIUM Non-registered IRC users using (1) ircd-hybrid 7.0.1 and earlier, (2) ircd-ratbox 1.5.1 and earlier, or (3) ircd-ratbox 2.0rc6 and earlier do not have a rate-limit imposed, which c | Dec 6, 2004 | 5.0 | 25 | NO | YES |
CVE-2009-4016MEDIUM Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_link | Feb 4, 2010 | 6.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ircd Hybrid.
Media articles that mention a CVE ID that affects a product developed by Ircd Hybrid — matched by CVE ID, not by vendor name.