UbuntuUpdates.org

Package "irssi"

Name: irssi

Description:

terminal based IRC client

Latest version: 0.8.15-4ubuntu3.1
Release: precise (12.04)
Level: updates
Repository: main
Homepage: http://irssi.org/

Links


Download "irssi"


Other versions of "irssi" in Precise

Repository Area Version
base main 0.8.15-4ubuntu3
security main 0.8.15-4ubuntu3.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 0.8.15-4ubuntu3.1 2017-02-01 20:06:44 UTC

  irssi (0.8.15-4ubuntu3.1) precise-security; urgency=medium

  * SECURITY UPDATE: local information disclosure via scrollbuffer dump
    - debian/patches/CVE-2016-7553.patch: set proper permissions in
      scripts/buf.pl.
    - CVE-2016-7553
  * SECURITY UPDATE: multiple security issues
    - debian/patches/CVE-2017-5xxx.patch: properly handle strings in
      src/fe-common/core/formats.c, properly handle invalid nicks in
      src/irc/core/irc-nicklist.c, make sure nick is valid in
      src/irc/core/irc-queries.c.
    - CVE-2017-5193
    - CVE-2017-5194
    - CVE-2017-5356

 -- Marc Deslauriers <email address hidden> Wed, 25 Jan 2017 13:16:47 -0500

CVE-2016-7553 Information disclosure vulnerability in buf.pl
CVE-2017-5193 NULL pointer dereference in the nickcmp function
CVE-2017-5194 Use after free when receiving invalid nick message
CVE-2017-5356 Irssi out of bounds read in format string



About   -   Send Feedback to @ubuntu_updates