Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Debian 7 DLA-1088-1 Moderate: irssi Remote Crash Advisory

debian lts
Calendar Grey September 4, 2017
Dist Debian Esm H88
To boost security against remote threats and prevent crashes, update Irssi on your Debian 7 system by following these key steps for a safer experience
Irssi has some issues where remote attackers might be able to cause a crash

Summary

CVE-2017-9468

In irssi, when receiving a DCC message without source nick/host, it
attempts to dereference a NULL pointer.

CVE-2017-9469

In irssi, when receiving certain incorrectly quoted DCC files, it tries to
find the terminating quote one byte before the allocated memory.

For Debian 7 "Wheezy", these problems have been fixed in version
0.8.15-5+deb7u2.

We recommend that you upgrade your irssi packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Package: irssi
Version: 0.8.15-5+deb7u2
CVE ID: CVE-2017-9468 CVE-2017-9469
Debian Bug: #864400

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here