openSUSE-SU-2018:0057-1
Dashboard / Vulnerabilities / openSUSE-SU-2018:0057-1
openSUSE-SU-2018:0057-1
Summary: Security update for irssi
Details: This update for irssi to version 1.0.6 fixes several issues that may affect the stability of irssi: - CVE-2018-5205: Data access beyond the end of the string when using incomplete escape codes - CVE-2018-5206: NULL pointer dereference when the channel topic is set without specifying a sender - CVE-2018-5207: When using an incomplete variable argument, Irssi may access data beyond the end of the string - CVE-2018-5208: Heap buffer overflow when completing certain strings
References: , https://bugzilla.suse.com/1074958, https://www.suse.com/security/cve/CVE-2018-5205, https://www.suse.com/security/cve/CVE-2018-5206, https://www.suse.com/security/cve/CVE-2018-5207, https://www.suse.com/security/cve/CVE-2018-5208
Affected packages
Package
Name: irssi
Purl: pkg:rpm/suse/irssi&distro=SUSE%20Package%20Hub%2012
Affected ranges
Type: ECOSYSTEM
Events:
