CVE-2018-1000179: Null Pointer Dereference
Published May 8, 2018
·Updated
A NULL Pointer Dereference of CWE-476 exists in quassel version 0.12.4 in the quasselcore void CoreAuthHandler::handle(const Login &msg) coreauthhandler.cpp line 235 that allows an attacker to cause a denial of service.
Affected Software
4 affected componentsFixes available
Quassel-irc Quassel=0.12.4
Debian Debian Linux=8.0
Debian Debian Linux=9.0
debian/quassel
1:0.13.1-51:0.14.0-11:0.14.0-31:0.14.0-4
Event History
May 8, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Data Sourced
via NVD·03:29 PM
DescriptionSeverityWeaknessAffected Software
Feb 20, 2026
Data Sourced
via Ubuntu·03:21 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·03:21 PM
Description
Data Sourced
via Debian·03:21 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-1000179?
CVE-2018-1000179 is classified as a denial of service vulnerability.
2
How do I fix CVE-2018-1000179?
To fix CVE-2018-1000179, upgrade to quassel versions 0.12.5 or later, or the specific patched versions for Debian and Ubuntu listed in the advisory.
3
What software is affected by CVE-2018-1000179?
CVE-2018-1000179 affects quassel version 0.12.4 and prior, including various Debian and Ubuntu releases.
4
What type of vulnerability is CVE-2018-1000179?
CVE-2018-1000179 is a NULL Pointer Dereference vulnerability identified by CWE-476.
5
What potential impact does CVE-2018-1000179 have?
CVE-2018-1000179 can lead to a denial of service, potentially crashing the quassel server.