CVE-2017-15722: Medium severity irssi vulnerability
Published Oct 22, 2017
·Updated
In certain cases, Irssi before 1.0.5 may fail to verify that a Safe channel ID is long enough, causing reads beyond the end of the string.
Affected Software
5 affected componentsFixes available
debian/irssi
1.2.0-2+deb10u11.2.3-11.4.3-21.4.5-1
Irssi irssi<=1.0.4
Debian Debian Linux=7.0
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Remediation
Patch Available
Patch Available
Event History
Oct 22, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15722?
CVE-2017-15722 has a moderate severity level due to potential memory corruption issues.
2
How do I fix CVE-2017-15722?
To fix CVE-2017-15722, update Irssi to version 1.0.5 or later.
3
What versions of Irssi are affected by CVE-2017-15722?
Irssi versions prior to 1.0.5 are affected by CVE-2017-15722.
4
Does CVE-2017-15722 affect Debian users?
Yes, Debian versions 7.0, 8.0, and 9.0 with vulnerable Irssi versions are affected by CVE-2017-15722.
5
What can happen if CVE-2017-15722 is exploited?
Exploitation of CVE-2017-15722 can lead to potential denial of service or arbitrary code execution.