In Irssi before 1.0.5, certain incorrectly formatted DCC CTCP messages could cause a NULL pointer dereference. This is a separate, but similar, issue relative to CVE-2017-9468.
CVSS Details
- CVSS 3.0 Base Score: 7.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | alpine-linux-upgrade-irssi | Feb 21, 2018 | Oct 22, 2017 | |
| Arch Linux | arch-linux-upgrade-latest | Jul 11, 2025 | Oct 22, 2017 | |
| Debian | debian-upgrade-irssi | Nov 4, 2017 | Oct 22, 2017 | |
| Freebsd | freebsd-upgrade-package-irssi | Dec 10, 2025 | Oct 22, 2017 | |
| Huawei Euleros 2_0_sp1 | huawei-euleros-2_0_sp1-upgrade-irssi | Dec 4, 2017 | Oct 22, 2017 | |
| Huawei Euleros 2_0_sp2 | huawei-euleros-2_0_sp2-upgrade-irssi | Dec 4, 2017 | Oct 22, 2017 | |
| Oracle Solaris | oracle-solaris-11-3-upgrade-network-chat-irssi-1-0-6-0-175-3-29-0-4-0 | Feb 22, 2018 | Oct 22, 2017 | |
| Redhat_linux | no-fix-redhat-rpm-package | Jul 9, 2025 | Oct 22, 2017 | |
| Suse | — | suse-upgrade-irssisuse-upgrade-irssi-devel | Oct 25, 2017 | Oct 22, 2017 |
| Ubuntu | ubuntu-upgrade-irssi | Oct 26, 2017 | Oct 22, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub