Show filters
43 Total Results
Displaying 11-20 of 43
Sort by:
Attacker Value
Unknown

CVE-2018-5205

Disclosure Date: January 06, 2018 (last updated November 26, 2024)
When using incomplete escape codes, Irssi before 1.0.6 may access data beyond the end of the string.
0
Attacker Value
Unknown

CVE-2018-5208

Disclosure Date: January 06, 2018 (last updated November 26, 2024)
In Irssi before 1.0.6, a calculation error in the completion code could cause a heap buffer overflow when completing certain strings.
0
Attacker Value
Unknown

CVE-2018-5206

Disclosure Date: January 06, 2018 (last updated November 26, 2024)
When the channel topic is set without specifying a sender, Irssi before 1.0.6 may dereference a NULL pointer.
0
Attacker Value
Unknown

CVE-2018-5207

Disclosure Date: January 06, 2018 (last updated November 26, 2024)
When using an incomplete variable argument, Irssi before 1.0.6 may access data beyond the end of the string.
0
Attacker Value
Unknown

CVE-2017-15227

Disclosure Date: October 22, 2017 (last updated November 26, 2024)
Irssi before 1.0.5, while waiting for the channel synchronisation, may incorrectly fail to remove destroyed channels from the query list, resulting in use-after-free conditions when updating the state later on.
0
Attacker Value
Unknown

CVE-2017-15723

Disclosure Date: October 22, 2017 (last updated November 26, 2024)
In Irssi before 1.0.5, overlong nicks or targets may result in a NULL pointer dereference while splitting the message.
0
Attacker Value
Unknown

CVE-2017-15228

Disclosure Date: October 22, 2017 (last updated November 26, 2024)
Irssi before 1.0.5, when installing themes with unterminated colour formatting sequences, may access data beyond the end of the string.
0
Attacker Value
Unknown

CVE-2017-15721

Disclosure Date: October 22, 2017 (last updated November 26, 2024)
In Irssi before 1.0.5, certain incorrectly formatted DCC CTCP messages could cause a NULL pointer dereference. This is a separate, but similar, issue relative to CVE-2017-9468.
0
Attacker Value
Unknown

CVE-2017-15722

Disclosure Date: October 22, 2017 (last updated November 26, 2024)
In certain cases, Irssi before 1.0.5 may fail to verify that a Safe channel ID is long enough, causing reads beyond the end of the string.
0
Attacker Value
Unknown

CVE-2017-10966

Disclosure Date: July 07, 2017 (last updated November 26, 2024)
An issue was discovered in Irssi before 1.0.4. While updating the internal nick list, Irssi could incorrectly use the GHashTable interface and free the nick while updating it. This would then result in use-after-free conditions on each access of the hash table.
0