CVE-2018-7052NULL Pointer Dereference in Irssi

Severity
7.5HIGHNVD
EPSS
1.1%
top 21.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 15
Latest updateMay 14

Description

An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. When the number of windows exceeds the available space, a crash due to a NULL pointer dereference would occur.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

NVDirssi/irssi< 1.0.7+1
debiandebian/irssi< irssi 1.0.7-1 (bookworm)
Debianirssi/irssi< 1.0.7-1+3
Ubuntuirssi/irssi< 0.8.15-5ubuntu3.5+1

Also affects: Debian Linux 9.0, Ubuntu Linux 14.04, 16.04, 17.10

🔴Vulnerability Details

3
GHSA
GHSA-2r5h-wgv6-m4rv: An issue was discovered in Irssi before 12022-05-14
OSV
irssi vulnerabilities2018-03-06
OSV
CVE-2018-7052: An issue was discovered in Irssi before 12018-02-15

📋Vendor Advisories

3
Ubuntu
Irssi vulnerabilities2018-03-06
Red Hat
irssi: Denial of Service (DoS) due to a NULL pointer dereference2018-02-02
Debian
CVE-2018-7052: irssi - An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. When the n...2018

💬Community

2
Bugzilla
CVE-2018-7052 irssi: Denial of Service (DoS) due to a NULL pointer dereference [fedora-all]2018-02-16
Bugzilla
CVE-2018-7052 irssi: Denial of Service (DoS) due to a NULL pointer dereference2018-02-16