Rapid7

vulnerability

Ubuntu: USN-5258-1 (CVE-2017-14727): WeeChat vulnerabilities

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Sep 23, 2017
Added
Mar 22, 2023
Modified
Apr 16, 2026

Description

logger.c in the logger plugin in WeeChat before 1.9.1 allows a crash via strftime date/time specifiers, because a buffer is not initialized.

Solutions

ubuntu-pro-upgrade-weechatubuntu-pro-upgrade-weechat-coreubuntu-pro-upgrade-weechat-cursesubuntu-pro-upgrade-weechat-guileubuntu-pro-upgrade-weechat-headlessubuntu-pro-upgrade-weechat-luaubuntu-pro-upgrade-weechat-perlubuntu-pro-upgrade-weechat-phpubuntu-pro-upgrade-weechat-pluginsubuntu-pro-upgrade-weechat-pythonubuntu-pro-upgrade-weechat-rubyubuntu-pro-upgrade-weechat-tcl
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.