9.8
CVSSv3

CVE-2017-7191

Published: 27/03/2017 Updated: 31/03/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The netjoin processing in Irssi 1.x prior to 1.0.2 allows malicious users to cause a denial of service (use-after-free) and possibly execute arbitrary code via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

irssi irssi

Vendor Advisories

Debian Bug report logs - #857502 irssi: CVE-2017-7191: use after free condition during netjoin processing Package: irssi; Maintainer for irssi is Rhonda D'Vine <rhonda@debianorg>; Source for irssi is src:irssi (PTS, buildd, popcon) Reported by: bugs@debian16bitsnet Date: Sun, 12 Mar 2017 00:57:02 UTC Severity: grave Ta ...
A use after free vulnerability has been discovered in irssi < 102 while producing a list of netjoins that can result in arbitrary code execution ...