5
CVSSv2

CVE-2015-8547

Published: 08/01/2016 Updated: 30/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The CoreUserInputHandler::doMode function in core/coreuserinputhandler.cpp in Quassel 0.10.0 allows remote malicious users to cause a denial of service (application crash) via the "/op *" command in a query.

Vulnerable Product Search on Vulmon Subscribe to Product

quassel-irc quassel

opensuse opensuse 13.2

opensuse opensuse 13.1

opensuse leap 42.1

Vendor Advisories

Debian Bug report logs - #807801 CVE-2015-8547: quassel: op command denial of service vulnerability Package: quassel; Maintainer for quassel is Debian KDE Extras Team <pkg-kde-extras@listsaliothdebianorg>; Source for quassel is src:quassel (PTS, buildd, popcon) Reported by: Henri Salo <henri@nervfi> Date: Sun, 13 ...