FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2010-1156

This CVE name corresponds to:

Entered Topic
2010-04-19 irssi -- multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2010-1156
Phase Assigned(20100329)

Description

core/nicklist.c in Irssi before 0.8.15 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to an attempted fuzzy nick match at the instant that a victim leaves a channel.

References

Source Reference
MLIST [oss-security] 20100411 CVE request: irssi 0.8.15
MLIST [oss-security] 20100412 Re: CVE request: irssi 0.8.15
MLIST [oss-security] 20100412 Re: CVE request: irssi 0.8.15
MLIST [oss-security] 20100413 Re: CVE request: irssi 0.8.15
MLIST [oss-security] 20100413 Re: CVE request: irssi 0.8.15
CONFIRM http://irssi.org/news
CONFIRM http://irssi.org/news/ChangeLog
CONFIRM http://svn.irssi.org/cgi-bin/viewvc.cgi/irssi/trunk/src/core/nicklist.c?root=irssi&r1=4922&r2=5126
FEDORA FEDORA-2010-6629
SLACKWARE SSA:2010-116-01
SUSE SUSE-SR:2010:011
UBUNTU USN-929-1
SECTRACK 1023845
SECUNIA 39365
SECUNIA 39620
SECUNIA 39797
VUPEN ADV-2010-0856
VUPEN ADV-2010-0987
VUPEN ADV-2010-1110
VUPEN ADV-2010-1107
XF irssi-unspecified-dos(57791)