You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa irssi

Sigurnosni nedostaci programskog paketa irssi

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2016-a64716084e
2016-10-10 17:33:25.714395
——————————————————————————–

Name : irssi
Product : Fedora 24
Version : 0.8.20
Release : 2.fc24
URL : http://irssi.org/
Summary : Modular text mode IRC client with Perl scripting
Description :
Irssi is a modular IRC client with Perl scripting. Only text-mode
frontend is currently supported. The GTK/GNOME frontend is no longer
being maintained.

——————————————————————————–
Update Information:

Security fix for CVE-2016-7553. —- This is new version of irssi fixing
security bugs, for details see upstream announcement:
https://github.com/irssi/irssi/releases/tag/0.8.20
——————————————————————————–
References:

[ 1 ] Bug #1379270 – CVE-2016-7553 irssi: Information disclosure in buf.pl
https://bugzilla.redhat.com/show_bug.cgi?id=1379270
[ 2 ] Bug #1378343 – CVE-2016-7044 irssi: Unchecked input in unformat_24bit_color() can lead to crash
https://bugzilla.redhat.com/show_bug.cgi?id=1378343
[ 3 ] Bug #1378344 – CVE-2016-7045 irssi: String length not validated in format_send_to_gui() causing crash
https://bugzilla.redhat.com/show_bug.cgi?id=1378344
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update irssi’ at the command line.
For more information, refer to “Managing Software with yum”,
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

——————————————————————————–
Fedora Update Notification
FEDORA-2016-0551065fe0
2016-10-10 17:32:54.995828
——————————————————————————–

Name : irssi
Product : Fedora 23
Version : 0.8.20
Release : 2.fc23
URL : http://irssi.org/
Summary : Modular text mode IRC client with Perl scripting
Description :
Irssi is a modular IRC client with Perl scripting. Only text-mode
frontend is currently supported. The GTK/GNOME frontend is no longer
being maintained.

——————————————————————————–
Update Information:

Security fix for CVE-2016-7553. —- This is new version of irssi fixing
security bugs, for details see upstream announcement:
https://github.com/irssi/irssi/releases/tag/0.8.20
——————————————————————————–
References:

[ 1 ] Bug #1379270 – CVE-2016-7553 irssi: Information disclosure in buf.pl
https://bugzilla.redhat.com/show_bug.cgi?id=1379270
[ 2 ] Bug #1378343 – CVE-2016-7044 irssi: Unchecked input in unformat_24bit_color() can lead to crash
https://bugzilla.redhat.com/show_bug.cgi?id=1378343
[ 3 ] Bug #1378344 – CVE-2016-7045 irssi: String length not validated in format_send_to_gui() causing crash
https://bugzilla.redhat.com/show_bug.cgi?id=1378344
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update irssi’ at the command line.
For more information, refer to “Managing Software with yum”,
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

AutorTomislav Protega
Cert idNCERT-REF-2016-10-0063-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa mujs

Otkriveni su sigurnosni nedostaci u programskom paketu mujs za Fedoru. Otkriveni nedostaci posljedica su čitanja podataka izvan granica dodijeljenje memorije...

Close