In certain cases, Irssi before 1.0.5 may fail to verify that a Safe channel ID is long enough, causing reads beyond the end of the string.
CVSS Details
- CVSS 3.0 Base Score: 5.9
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade irssi | Feb 21, 2018 | Oct 22, 2017 |
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Oct 22, 2017 |
| Debian | — | Upgrade irssi | Nov 4, 2017 | Oct 22, 2017 |
| Freebsd | — | Upgrade irssi | Dec 10, 2025 | Oct 22, 2017 |
| Huawei Euleros 2_0_sp1 | — | Upgrade irssi | Dec 4, 2017 | Oct 22, 2017 |
| Huawei Euleros 2_0_sp2 | — | Upgrade irssi | Dec 4, 2017 | Oct 22, 2017 |
| Oracle Solaris | — | Upgrade network/chat/irssi to version 1.0.6-0.175.3.29.0.4.0 on Solaris 11.3 | Feb 22, 2018 | Oct 22, 2017 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Oct 22, 2017 |
| Suse | — | Upgrade irssiUpgrade irssi-devel | Oct 25, 2017 | Oct 22, 2017 |
| Ubuntu | — | Upgrade irssi | Oct 26, 2017 | Oct 22, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub