Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-8073

Опубликовано: 23 апр. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.

РелизСтатусПримечание
devel

released

1.7-3
esm-apps/xenial

released

1.4-2ubuntu0.1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [0.4.2-3ubuntu0.1]]
precise

ignored

end of life
trusty

released

0.4.2-3ubuntu0.1
trusty/esm

DNE

trusty was released [0.4.2-3ubuntu0.1]
upstream

released

1.7-3
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

released

1.4-2ubuntu0.1

Показывать по

EPSS

Процентиль: 82%
0.01643
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
почти 9 лет назад

WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.

CVSS3: 7.5
debian
почти 9 лет назад

WeeChat before 1.7.1 allows a remote crash by sending a filename via D ...

suse-cvrf
почти 9 лет назад

Security update for weechat

CVSS3: 7.5
github
больше 3 лет назад

WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.

EPSS

Процентиль: 82%
0.01643
Низкий

5 Medium

CVSS2

7.5 High

CVSS3