Submitted by KeesCook on Wed, 2006-03-01 12:04
Referenced CVEs:
CVE-2006-0458
Description:
===========================================================
Ubuntu Security Notice USN-259-1 March 01, 2006
irssi-text vulnerability
CVE-2006-0458
===========================================================
A security issue affects the following Ubuntu releases:
Ubuntu 5.10 (Breezy Badger)
The following packages are affected:
irssi-text
The problem can be corrected by upgrading the affected package to
version 0.8.9+0.8.10rc5-0ubuntu4.1. After a standard system upgrade
you need to restart irssi to effect the necessary changes.
Details follow:
A Denial of Service vulnerability was discoverd in irssi. The DCC
ACCEPT command handler did not sufficiently verify the remotely
specified arguments. A remote attacker could exploit this to crash
irssi by sending a specially crafted DCC commands.


