Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2018.0069
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2018-0069)
Resumen:The remote host is missing an update for the 'irssi' package(s) announced via the MGASA-2018-0069 advisory.
Descripción:Summary:
The remote host is missing an update for the 'irssi' package(s) announced via the MGASA-2018-0069 advisory.

Vulnerability Insight:
Joseph Bisch discovered that Irssi incorrectly handled incomplete escape
codes. If a user were tricked into using malformed commands or opening
malformed files, an attacker could use this issue to cause Irssi to
crash, resulting in a denial of service (CVE-2018-5205).

Joseph Bisch discovered that Irssi incorrectly handled settings the
channel topic without specifying a sender. A malicious IRC server could
use this issue to cause Irssi to crash, resulting in a denial of service
(CVE-2018-5206).

Joseph Bisch discovered that Irssi incorrectly handled incomplete
variable arguments. If a user were tricked into using malformed commands
or opening malformed files, an attacker could use this issue to cause
Irssi to crash, resulting in a denial of service (CVE-2018-5207).

Joseph Bisch discovered that Irssi incorrectly handled completing
certain strings. An attacker could use this issue to cause Irssi to
crash, resulting in a denial of service, or possibly execute arbitrary
code (CVE-2018-5208).

Affected Software/OS:
'irssi' package(s) on Mageia 5, Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2018-5205
Debian Security Information: DSA-4162 (Google Search)
https://www.debian.org/security/2018/dsa-4162
https://usn.ubuntu.com/3527-1/
Common Vulnerability Exposure (CVE) ID: CVE-2018-5206
Common Vulnerability Exposure (CVE) ID: CVE-2018-5207
Common Vulnerability Exposure (CVE) ID: CVE-2018-5208
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.