CVE-2019-15717: Use After Free
Published Aug 29, 2019
·Updated
Irssi 1.2.x before 1.2.2 has a use-after-free if the IRC server sends a double CAP.
Affected Software
3 affected componentsFixes available
debian/irssi
1.2.3-11.4.3-21.4.5-1
Irssi irssi>=1.2.0<1.2.2
Canonical Ubuntu Linux=19.04
Remediation
Event History
Aug 29, 2019
CVE Published
via MITRE·04:07 PM
Data Sourced
via MITRE·04:07 PM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Feb 20, 2026
Data Sourced
via Ubuntu·11:41 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·11:42 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-15717?
CVE-2019-15717 has a moderate severity level due to the potential for exploitation via use-after-free vulnerabilities.
2
How do I fix CVE-2019-15717?
To fix CVE-2019-15717, upgrade to Irssi version 1.2.2 or later.
3
Which versions of Irssi are affected by CVE-2019-15717?
Irssi versions before 1.2.2 are vulnerable to CVE-2019-15717.
4
Is CVE-2019-15717 specific to any operating system?
CVE-2019-15717 affects multiple operating systems including Debian and Ubuntu.
5
What type of vulnerability is CVE-2019-15717?
CVE-2019-15717 is a use-after-free vulnerability that may occur when an IRC server sends a double CAP.