MGASA-2018-0132
Dashboard / Vulnerabilities / MGASA-2018-0132
MGASA-2018-0132
Summary: Updated irssi packages fix security vulnerability
Details: Null pointer dereference when an "empty" nick has been observed by Irssi (CVE-2018-7050). Certain nick names could result in out of bounds access when printing theme strings (CVE-2018-7051). When the number of windows exceed the available space, Irssi would crash due to Null pointer dereference (CVE-2018-7052). Use after free when SASL messages are received in unexpected order (CVE-2018-7053). Use after free when server is disconnected during netsplits (CVE-2018-7054).
References: https://advisories.mageia.org/MGASA-2018-0132.html, https://bugs.mageia.org/show_bug.cgi?id=22609, https://irssi.org/security/irssi_sa_2018_02.txt
Affected packages
Package
Name: irssi
Purl: pkg:rpm/mageia/irssi?arch=source&distro=mageia-6
Affected ranges
Type: ECOSYSTEM
Events:
