CVE-2018-5208 |
Medium |
No |
Denial of service |
In Irssi before 1.0.6 a calculation error in the completion code could cause a heap buffer overflow when completing certain strings. |
CVE-2018-5207 |
Medium |
No |
Denial of service |
When using an incomplete variable argument, irssi before 1.0.6 may access data beyond the end of the string. |
CVE-2018-5206 |
Medium |
Yes |
Denial of service |
When the channel topic is set without specifying a sender, irssi before 1.0.6 may dereference a NULL pointer. |
CVE-2018-5205 |
Medium |
No |
Denial of service |
When using incomplete escape codes, irssi before 1.0.6 may access data beyond the end of the string. |