Описание
WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 1.7-3 |
| esm-apps/xenial | released | 1.4-2ubuntu0.1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [0.4.2-3ubuntu0.1]] |
| precise | ignored | end of life |
| trusty | released | 0.4.2-3ubuntu0.1 |
| trusty/esm | DNE | trusty was released [0.4.2-3ubuntu0.1] |
| upstream | released | 1.7-3 |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE | |
| xenial | released | 1.4-2ubuntu0.1 |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.
WeeChat before 1.7.1 allows a remote crash by sending a filename via D ...
WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.
EPSS
5 Medium
CVSS2
7.5 High
CVSS3