CVE-2018-5208: Buffer Overflow
Published Jan 6, 2018
·Updated
In Irssi before 1.0.6, a calculation error in the completion code could cause a heap buffer overflow when completing certain strings.
Affected Software
7 affected componentsFixes available
ubuntu/irssi<1.0.4-1ubuntu2.2
1.0.4-1ubuntu2.2
ubuntu/irssi<0.8.15-5ubuntu3.4
0.8.15-5ubuntu3.4
ubuntu/irssi<0.8.19-1ubuntu1.6
0.8.19-1ubuntu1.6
ubuntu/irssi<0.8.20-2ubuntu2.3
0.8.20-2ubuntu2.3
debian/irssi
1.2.3-11.4.3-21.4.5-1
Irssi irssi<1.0.6
Debian Debian Linux=9.0
Remediation
Patch Available
Event History
Jan 6, 2018
CVE Published
via Ubuntu·12:00 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Aug 5, 2024
Data Sourced
via Launchpad·05:39 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-5208?
CVE-2018-5208 is considered a high severity vulnerability due to the potential for a heap buffer overflow.
2
How do I fix CVE-2018-5208?
To fix CVE-2018-5208, update Irssi to version 1.0.6 or later.
3
What software versions are affected by CVE-2018-5208?
Irssi versions prior to 1.0.6 are affected, along with certain versions of Debian Linux.
4
What type of vulnerability is CVE-2018-5208?
CVE-2018-5208 is a heap buffer overflow vulnerability caused by a calculation error in the completion code.
5
Is CVE-2018-5208 relevant to Ubuntu users?
Yes, Ubuntu users running specific versions of the irssi package prior to 1.0.6 are affected by CVE-2018-5208.