7.5
CVSSv2

CVE-2018-7054

Published: 15/02/2018 Updated: 04/07/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in Irssi prior to 1.0.7 and 1.1.x prior to 1.1.1. There is a use-after-free when a server is disconnected during netsplits. NOTE: this issue exists because of an incomplete fix for CVE-2017-7191.

Vulnerable Product Search on Vulmon Subscribe to Product

irssi irssi 1.1.0

irssi irssi

canonical ubuntu linux 17.10

canonical ubuntu linux 14.04

canonical ubuntu linux 16.04

debian debian linux 9.0

Vendor Advisories

Several security issues were fixed in Irssi ...
Several security issues were fixed in Irssi ...
Multiple vulnerabilities have been discovered in Irssi, a terminal-based IRC client which can result in denial of service For the stable distribution (stretch), these problems have been fixed in version 107-1~deb9u1 We recommend that you upgrade your irssi packages For the detailed security status of irssi please refer to its security tracker ...
Debian Bug report logs - #890674 irssi: CVE-2018-7054 Package: src:irssi; Maintainer for src:irssi is Rhonda D'Vine <rhonda@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 17 Feb 2018 15:45:05 UTC Severity: important Tags: patch, security, upstream Found in version irssi/100-1 Fixed i ...
Debian Bug report logs - #886475 irssi: CVE-2018-5205 CVE-2018-5206 CVE-2018-5207 CVE-2018-5208 Package: src:irssi; Maintainer for src:irssi is Rhonda D'Vine <rhonda@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 6 Jan 2018 14:42:02 UTC Severity: important Tags: fixed-upstream, patch, ...
Debian Bug report logs - #890678 irssi: CVE-2018-7050 Package: src:irssi; Maintainer for src:irssi is Rhonda D'Vine <rhonda@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 17 Feb 2018 15:48:05 UTC Severity: important Tags: patch, security, upstream Found in version irssi/0817-1 Fixed ...
Debian Bug report logs - #890677 irssi: CVE-2018-7051 Package: src:irssi; Maintainer for src:irssi is Rhonda D'Vine <rhonda@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 17 Feb 2018 15:48:02 UTC Severity: important Tags: patch, security, upstream Found in version irssi/0817-1 Fixed ...
Debian Bug report logs - #890676 irssi: CVE-2018-7052 Package: src:irssi; Maintainer for src:irssi is Rhonda D'Vine <rhonda@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 17 Feb 2018 15:45:11 UTC Severity: important Tags: patch, security, upstream Found in version irssi/0817-1 Fixed ...
An issue was discovered in Irssi before 107 and 11x before 111 There is a use-after-free when a server is disconnected during netsplits NOTE: this issue exists because of an incomplete fix for CVE-2017-7191 ...
An issue was discovered in Irssi before 107 and 11x before 111 There is a use-after-free when a server is disconnected during netsplits ...