CVE-2017-15721

Priority
Medium
Description
In Irssi before 1.0.5, certain incorrectly formatted DCC CTCP messages
could cause a NULL pointer dereference. This is a separate, but similar,
issue relative to CVE-2017-9468.
References
Bugs
Notes
 mdeslaur> same commit as CVE-2017-15227
Assigned-to
mdeslaur
Package
Source: irssi (LP Ubuntu Debian)
Upstream:needs-triage
Ubuntu 17.10 (Artful Aardvark):released (1.0.4-1ubuntu2.1)
Ubuntu 18.04 LTS (Bionic Beaver):released (1.0.4-1ubuntu3)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):released (0.8.15-5ubuntu3.3)
Ubuntu 16.04 LTS (Xenial Xerus):released (0.8.19-1ubuntu1.5)
Ubuntu 17.04 (Zesty Zapus):released (0.8.20-2ubuntu2.2)
Patches:
Upstream:https://github.com/irssi/irssi/commit/43e44d553d44e313003cee87e6ea5e24d68b84a1
More Information

Updated: 2017-10-30 16:14:36 UTC (commit 13607)