Описание
Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server.
Ссылки
- Third Party Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- PatchThird Party Advisory
- Vendor Advisory
- Mailing ListThird Party Advisory
- Third Party Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- PatchThird Party Advisory
- Vendor Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 0.8.18 (включая) до 1.0.8 (исключая)Версия от 1.1.0 (включая) до 1.1.3 (исключая)Версия от 1.2.0 (включая) до 1.2.1 (исключая)
Одно из
cpe:2.3:a:irssi:irssi:*:*:*:*:*:*:*:*
cpe:2.3:a:irssi:irssi:*:*:*:*:*:*:*:*
cpe:2.3:a:irssi:irssi:*:*:*:*:*:*:*:*
EPSS
Процентиль: 90%
0.05965
Низкий
8.1 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-416
Связанные уязвимости
CVSS3: 8.1
ubuntu
почти 6 лет назад
Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server.
CVSS3: 3.7
redhat
почти 6 лет назад
Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server.
CVSS3: 8.1
debian
почти 6 лет назад
Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when S ...
EPSS
Процентиль: 90%
0.05965
Низкий
8.1 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-416