CVE-2017-9469 log

Source
Severity Medium
Remote Yes
Type Denial of service
Description
In Irssi before 1.0.3, when receiving certain incorrectly quoted DCC files, it tries to find the terminating quote one byte before the allocated memory. Thus, remote attackers might be able to cause a crash.
Group Package Affected Fixed Severity Status Ticket
AVG-293 irssi 1.0.2-2 1.0.3-1 Medium Fixed
Date Advisory Group Package Severity Type
12 Jun 2017 ASA-201706-11 AVG-293 irssi Medium denial of service
References
https://irssi.org/security/irssi_sa_2017_06.txt
http://openwall.com/lists/oss-security/2017/06/06/4
Notes
May result in denial of service (remote crash), but in practice this seems to be very unlikely unless address sanitizer is enabled.