Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-29132

Опубликовано: 30 мар. 2023
Источник: redhat
CVSS3: 7.5

Описание

Irssi 1.3.x and 1.4.x before 1.4.4 has a use-after-free because of use of a stale special collector reference. This occurs when printing of a non-formatted line is concurrent with printing of a formatted line.

A flaw was found in the Irssi package. When Irssi prints a message while another message is being printed, the list that keeps track of Irssi variables for use in statusbar/message patterns is incorrectly cleaned up, leading to a use-after-free condition.

Отчет

The versions of Irssi as shipped in Red Hat Enterprise Linux 6, 7, 8, and 9 are not affected by this vulnerability. Only Irssi versions 1.3.0 and higher are vulnerable.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6irssiNot affected
Red Hat Enterprise Linux 7irssiNot affected
Red Hat Enterprise Linux 8irssiNot affected
Red Hat Enterprise Linux 9irssiNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=2184020irssi: a use after free possible under special circumstances

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 3 года назад

Irssi 1.3.x and 1.4.x before 1.4.4 has a use-after-free because of use of a stale special collector reference. This occurs when printing of a non-formatted line is concurrent with printing of a formatted line.

CVSS3: 5.3
nvd
почти 3 года назад

Irssi 1.3.x and 1.4.x before 1.4.4 has a use-after-free because of use of a stale special collector reference. This occurs when printing of a non-formatted line is concurrent with printing of a formatted line.

CVSS3: 5.3
debian
почти 3 года назад

Irssi 1.3.x and 1.4.x before 1.4.4 has a use-after-free because of use ...

CVSS3: 5.3
github
почти 3 года назад

Irssi 1.3.x and 1.4.x before 1.4.4 has a use-after-free because of use of a stale special collector reference. This occurs when printing of a non-formatted line is concurrent with printing of a formatted line.

7.5 High

CVSS3