core/nicklist.c in Irssi before 0.8.15 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to an attempted fuzzy nick match at the instant that a victim leaves a channel.
CVSS Details
- CVSS 3.1 Base Score: 5.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade irssi | Jul 30, 2024 | Apr 16, 2010 |
| Freebsd | — | Upgrade irssi-develUpgrade irssiUpgrade zh-irssi | Dec 10, 2025 | Apr 19, 2010 |
| Suse | — | Upgrade irssiUpgrade irssi-devel | Feb 17, 2015 | Apr 16, 2010 |
| Ubuntu | — | Upgrade irssi | Nov 8, 2024 | Apr 16, 2010 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub