openSUSE-SU-2018:0477-1
Dashboard / Vulnerabilities / openSUSE-SU-2018:0477-1
openSUSE-SU-2018:0477-1
Summary: Security update for irssi
Details: This update for irssi fixes the following security issues: - CVE-2018-7054: Use after free when server is disconnected during netsplits - CVE-2018-7053: Use after free when SASL messages are received in unexpected order - CVE-2018-7050: Null pointer dereference when an 'empty' nick has been observed - CVE-2018-7052: When the number of windows exceed the available space, Irssi would crash due to Null pointer dereference - CVE-2018-7051: Certain nick names could result in out of bounds access when printing theme strings
References: , https://bugzilla.suse.com/1081238, https://www.suse.com/security/cve/CVE-2018-7050, https://www.suse.com/security/cve/CVE-2018-7051, https://www.suse.com/security/cve/CVE-2018-7052, https://www.suse.com/security/cve/CVE-2018-7053, https://www.suse.com/security/cve/CVE-2018-7054
Affected packages
Package
Name: irssi
Purl: pkg:rpm/suse/irssi&distro=SUSE%20Package%20Hub%2012
Affected ranges
Type: ECOSYSTEM
Events:
