Описание
Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | irssi | Not affected | ||
Red Hat Enterprise Linux 7 | irssi | Not affected | ||
Red Hat Enterprise Linux 8 | irssi | Fixed | RHSA-2020:1616 | 28.04.2020 |
Показывать по
10
Дополнительная информация
Статус:
Low
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1727683irssi: use after free when sending SASL login to server
3.7 Low
CVSS3
Связанные уязвимости
CVSS3: 8.1
ubuntu
почти 6 лет назад
Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server.
CVSS3: 8.1
nvd
почти 6 лет назад
Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server.
CVSS3: 8.1
debian
почти 6 лет назад
Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when S ...
3.7 Low
CVSS3