CVE-2016-7553

Priority
Description
The buf.pl script before 2.20 in Irssi before 0.8.20 uses weak permissions
for the scrollbuffer dump file created between upgrades, which might allow
local users to obtain sensitive information from private chat conversations
by reading the file.
Assigned-to
mdeslaur
Notes
Package
Source: irssi (LP Ubuntu Debian)
Upstream:released (0.8.20-2)
Ubuntu 14.04 ESM (Trusty Tahr):DNE (trusty was released [0.8.15-5ubuntu3.1])
Ubuntu 16.04 LTS (Xenial Xerus):released (0.8.19-1ubuntu1.3)
Patches:
Upstream:https://github.com/irssi/scripts.irssi.org/commit/f1b1eb154baa684fad5d65bf4dff79c8ded8b65a
More Information

Updated: 2019-12-05 18:46:17 UTC (commit dd38ff22974aae499eb50644b9d5a2817483cbdb)