irssi 1.0.7-1 source package in Debian

Changelog

irssi (1.0.7-1) unstable; urgency=high

  * New upstream bugfix release (closes: #886475):
    From 1.0.6:
    - Fix invalid memory access when reading hilight configuration
      (#787, #788).
    - Fix null pointer dereference when the channel topic is set
      without specifying a sender [CVE-2018-5206]
    - Fix return of random memory when using incomplete escape
      codes [CVE-2018-5205]
    - Fix heap buffer overflow when completing certain strings
      [CVE-2018-5208]
    - Fix return of random memory when using an incomplete
      variable argument [CVE-2018-5207]

    From 1.0.7:
    - Prevent use after free error during the execution of some
      commands. Found by Joseph Bisch [CVE-2018-7054] (closes: #890674)
    - Revert netsplit print optimisation due to crashes
    - Fix use after free when SASL messages are received in
      unexpected order [CVE-2018-7053] (closes: #890675)
    - Fix null pointer dereference in the tab completion when an
      empty nick is joined [CVE-2018-7050] (closes: #890678)
    - Fix use after free when entering oper password
    - Fix null pointer dereference when too many windows are
      opened [CVE-2018-7052] (closes: #890676)
    - Fix out of bounds access in theme strings when the last
      escape is incomplete. Credit to Oss-Fuzz [CVE-2018-7051]
      (closes: #890677)
    - Fix out of bounds write when using negative counts on window
      resize
    - Minor help correction. By William Jackson

  * Fix watch URL.
  * Bump to debhelper compat 11, remove autotools-dev Build-Depends.
  * Bump Standards-Version to 4.1.3.
  * Add lintian overrides for the spelling of "hilight" in the changelog
    mentioning the lintian overrides for the spelling of "hilight" in irssi
    itself.

 -- Rhonda D'Vine <email address hidden>  Tue, 06 Mar 2018 14:42:44 +0100

Upload details

Uploaded by:
Rhonda D'Vine
Uploaded to:
Sid
Original maintainer:
Rhonda D'Vine
Architectures:
any
Section:
net
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
irssi_1.0.7-1.dsc 2.1 KiB 8c16bc07a086213ead747c83e8af1ee89862c9bcef16675987dc90b699787731
irssi_1.0.7.orig.tar.xz 1009.9 KiB 1b386ca026aa1875c380fd00ef1d24b71fb87cdae39ef5349ecca16c4567feac
irssi_1.0.7.orig.tar.xz.asc 1009.9 KiB 1b386ca026aa1875c380fd00ef1d24b71fb87cdae39ef5349ecca16c4567feac
irssi_1.0.7-1.debian.tar.xz 19.9 KiB a06eedac3c912d2f14d4399591572ff98dd9601db7b6b92ba2733c319419b45c

No changes file available.

Binary packages built by this source