MGASA-2019-0206 - Updated irssi package fixes security vulnerability

Publication date: 10 Jul 2019
URL: https://advisories.mageia.org/MGASA-2019-0206.html
Type: security
Affected Mageia releases: 6, 7
CVE: CVE-2019-13045

Irssi before 1.0.8 and 1.2.x before 1.2.1, when SASL is enabled, has a use
after free when sending SASL login to the server (CVE-2019-13045).

References:
- https://bugs.mageia.org/show_bug.cgi?id=25025
- https://irssi.org/security/irssi_sa_2019_06.txt
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-13045

SRPMS:
- 7/core/irssi-1.2.1-1.mga7
- 6/core/irssi-1.0.8-1.mga6

Mageia 2019-0206: irssi security update

Irssi before 1.0.8 and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server (CVE-2019-13045)

Summary

Irssi before 1.0.8 and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server (CVE-2019-13045).

References

- https://bugs.mageia.org/show_bug.cgi?id=25025

- https://irssi.org/security/irssi_sa_2019_06.txt

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-13045

Resolution

MGASA-2019-0206 - Updated irssi package fixes security vulnerability

SRPMS

- 7/core/irssi-1.2.1-1.mga7

- 6/core/irssi-1.0.8-1.mga6

Severity
Publication date: 10 Jul 2019
URL: https://advisories.mageia.org/MGASA-2019-0206.html
Type: security
CVE: CVE-2019-13045

Related News