CVE-2019-5882: Use After Free
Published Jan 9, 2019
·Updated
Irssi 1.1.x before 1.1.2 has a use after free when hidden lines are expired from the scroll buffer.
Affected Software
6 affected componentsFixes available
debian/irssi
1.2.3-11.4.3-21.4.5-1
Irssi irssi>=1.1.0<1.1.2
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=16.04
Canonical Ubuntu Linux=18.04
Canonical Ubuntu Linux=18.10
Remediation
Patch Available
Event History
Jan 9, 2019
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Jan 11, 2024
Data Sourced
via Launchpad·11:31 PM
Description
Feb 23, 2026
Data Sourced
via Ubuntu·04:38 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-5882?
CVE-2019-5882 is classified as a medium severity vulnerability due to the potential for exploitation through a use-after-free condition.
2
How do I fix CVE-2019-5882?
To remediate CVE-2019-5882, upgrade Irssi to version 1.1.2 or later.
3
Which versions of Irssi are affected by CVE-2019-5882?
Irssi versions 1.1.0 through 1.1.1 are vulnerable to CVE-2019-5882.
4
What type of vulnerability is CVE-2019-5882?
CVE-2019-5882 is a use-after-free vulnerability that occurs when hidden lines are expired from the scroll buffer.
5
On which operating systems can CVE-2019-5882 be found?
CVE-2019-5882 affects Irssi installations on Debian and Ubuntu versions 14.04, 16.04, 18.04, and 18.10.