xchat 2.0.6 allows remote attackers to cause a denial of service (crash) via a passive DCC request with an invalid ID number, which causes a null dereference.Referenceshttp://mail.nl.linux.org/xchat-announce/2003-12/msg00000.htmlhttp://marc.info/?l=bugtraq&m=107152093419276&w=2