Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-5356

Опубликовано: 03 мар. 2017
Источник: debian
EPSS Низкий

Описание

Irssi before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a string containing a formatting sequence (%[) without a closing bracket (]).

Пакеты

ПакетСтатусВерсия исправленияРелизТип
irssifixed0.8.21-1package
irssifixed0.8.17-1+deb8u3jessiepackage

Примечания

  • https://github.com/irssi/irssi/commit/6c6c42e3d1b49d90aacc0b67f8540471cae02a1d

  • https://blog.fuzzing-project.org/55-Fuzzing-Irssi-with-Perl-Scripts.html

  • https://irssi.org/security/irssi_sa_2017_01.txt

EPSS

Процентиль: 86%
0.02755
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 9 лет назад

Irssi before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a string containing a formatting sequence (%[) without a closing bracket (]).

CVSS3: 5.9
redhat
около 9 лет назад

Irssi before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a string containing a formatting sequence (%[) without a closing bracket (]).

CVSS3: 7.5
nvd
почти 9 лет назад

Irssi before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a string containing a formatting sequence (%[) without a closing bracket (]).

CVSS3: 7.5
github
больше 3 лет назад

Irssi before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a string containing a formatting sequence (%[) without a closing bracket (]).

EPSS

Процентиль: 86%
0.02755
Низкий