Out-of-bounds read in Irssi - CVE-2017-15722
Published: October 22, 2017 / Updated: July 28, 2020
Vulnerability identifier: #VU32044
CSH Severity: Medium
CVSS v4: 8.2 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-15722
CWE-ID: CWE-125
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
In certain cases, Irssi before 1.0.5 may fail to verify that a Safe channel ID is long enough, causing reads beyond the end of the string.
Affected software
Irssi
Arch Linux
Slackware Linux
irssi (Alpine package)
Arch Linux
Slackware Linux
irssi (Alpine package)
How to mitigate CVE-2017-15722
Install update from vendor's website.
Irssi - update to 1.0.5
irssi (Alpine package) - addressed in versions 1.0.5-r0, 1.0.6-r0
irssi (Alpine package) - addressed in versions 1.0.5-r0, 1.0.6-r0