IRSSI超长畸形主题服务拒绝漏洞

漏洞信息详情

IRSSI超长畸形主题服务拒绝漏洞

漏洞简介

irssi-text 0.8.4之前版本的IRC client irssi存在漏洞。远程攻击者借助有紧跟着某些字符串的超长主题的IRC通道导致服务拒绝(崩溃),该漏洞可能触发缓冲区溢出。

漏洞公告

This issue does not appear to be present in versions earlier than 0.8.4. It has also been reported that only the text version of the client is affected, and irssi-gnome and irssi-gtk are unaffected.
FreeBSD has released a Security Notice FreeBSD-SN-02:05. Users of FreeBSD
systems are strongly urged to upgrade their ports tree to fix various
reported issues. Further information can be found in the referenced
Security Notice.
Fixes are available:
irssi irssi 0.8.4

参考网址

来源: BID
名称: 5055
链接:http://www.securityfocus.com/bid/5055

来源: DEBIAN
名称: DSA-157
链接:http://www.debian.org/security/2002/dsa-157

来源: XF
名称: irssi-long-topic-dos(9395)
链接:http://xforce.iss.net/xforce/xfdb/9395

来源: FREEBSD
名称: FreeBSD-SN-02:05
链接:ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02%3A05.asc

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享