CVE-2017-9468
Description
In Irssi before 1.0.3, when receiving a DCC message without source nick/host, it attempts to dereference a NULL pointer. Thus, remote IRC servers can cause a crash.
Risk Information
Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
1.363
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| terminal based IRC client (USN-3317-1) irssi_0.8.15-5ubuntu3.2_i386.deb | Linux |
| terminal based IRC client (USN-3317-1) irssi_0.8.15-5ubuntu3.2_amd64.deb | Linux |
| terminal based IRC client (USN-3317-1) irssi_0.8.19-1ubuntu1.4_i386.deb | Linux |
| terminal based IRC client (USN-3317-1) irssi_0.8.19-1ubuntu1.4_amd64.deb | Linux |
| terminal based IRC client (USN-3317-1) irssi_0.8.19-1ubuntu2.2_i386.deb | Linux |
| terminal based IRC client (USN-3317-1) irssi_0.8.19-1ubuntu2.2_amd64.deb | Linux |
| terminal based IRC client (USN-3317-1) irssi_0.8.20-2ubuntu2.1_i386.deb | Linux |
| terminal based IRC client (USN-3317-1) irssi_0.8.20-2ubuntu2.1_amd64.deb | Linux |
| Irssi 0.8.15-5ubuntu3.2 for Ubuntu 14.04 LTS (x64) irssi_0.8.15-5ubuntu3.2_amd64.deb | Linux |
| Irssi 0.8.15-5ubuntu3.2 for Ubuntu 14.04 LTS irssi_0.8.15-5ubuntu3.2_i386.deb | Linux |
| Irssi 0.8.19-1ubuntu1.4 for Ubuntu 16.04 LTS (x64) irssi_0.8.19-1ubuntu1.4_amd64.deb | Linux |
| Irssi 0.8.19-1ubuntu1.4 for Ubuntu 16.04 LTS irssi_0.8.19-1ubuntu1.4_i386.deb | Linux |
| Irssi 0.8.19-1ubuntu2.2 for Ubuntu 16.10 (x64) irssi_0.8.19-1ubuntu2.2_amd64.deb | Linux |
| Irssi 0.8.19-1ubuntu2.2 for Ubuntu 16.10 irssi_0.8.19-1ubuntu2.2_i386.deb | Linux |
| Irssi 0.8.20-2ubuntu2.1 for Ubuntu 17.04 (x64) irssi_0.8.20-2ubuntu2.1_amd64.deb | Linux |
| Irssi 0.8.20-2ubuntu2.1 for Ubuntu 17.04 irssi_0.8.20-2ubuntu2.1_i386.deb | Linux |
| irssi security update(DSA-3885-1) irssi_0.8.17-1+deb8u4_i386.deb | Linux |
| irssi security update(DSA-3885-1) irssi_0.8.17-1+deb8u4_amd64.deb | Linux |
| irssi security update(DSA-3885-1) irssi_0.8.17-1+deb8u4_kfreebsd-i386.deb | Linux |
| irssi security update(DSA-3885-1) irssi_0.8.17-1+deb8u4_kfreebsd-amd64.deb | Linux |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234