-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-3672-1 security@xxxxxxxxxx https://www.debian.org/security/ Salvatore Bonaccorso September 21, 2016 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : irssi CVE ID : CVE-2016-7044 CVE-2016-7045 Gabriel Campana and Adrien Guinet from Quarkslab discovered two remotely exploitable crash and heap corruption vulnerabilities in the format parsing code in Irssi, a terminal based IRC client. For the stable distribution (jessie), these problems have been fixed in version 0.8.17-1+deb8u1. We recommend that you upgrade your irssi packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@xxxxxxxxxxxxxxxx -----BEGIN PGP SIGNATURE----- iQJ8BAEBCgBmBQJX4uJ1XxSAAAAAAC4AKGlzc3Vlci1mcHJAbm90YXRpb25zLm9w ZW5wZ3AuZmlmdGhob3JzZW1hbi5uZXQ0NjQ0NDA5ODA4QzE3MUUwNTUzMURERUUw NTRDQjhGMzEzNDNDRjQ0AAoJEAVMuPMTQ89EioIP/RiBWnM6Wq0t3NzsXoX1Xcv9 dVkpJ6QAbGOsmZvXkJkB6qwVsb4C1SG3IoRx/DPrKAMPeg8b8YdU5j6HbatCvo9h pq6R/PUsL2jhg9pm+PNCM88uADb7mUDs8aK3ShbFJx+/YKNbeDCI3ZMULXdiMAWG zKH0EyFjJz4VPVDxkKhuhEA46KDhBPk3TIkwCv5PIhpBp973RD2x48nDX6laV7yF 7vUx3BFVpwkyVpqhoL0OZevyaNhP+Hw4J+DoQiyT8U0xHB3t4wT35lEBxqlVlR0d 03UPSCVA/k0vo5DqtL1ASmeZ3KmMKgUVPS0eeZ07embCdXH9xP6As9XPPxC1tyMB hsOcF+5vEKcAJPIIqejkWYbIoleX92FeBPzwEnAQPTxT0+RDmc79yOJvRTcHZ84x C3B5cclEkEfsperb0SRd4RPvN9FldUP9TEPXgSHTDya7VxNe7xpP+2mAI6JUHGyQ hL5WNj6u1MnfiCp6ZdvZfqWVzsKrd3W9sCl1poWI28MTk9IOPN+E2xjlOLDlJ3gZ uBxZv3DhaRQgYt3ECvykTyaAzl4kNP5OxkP5RDnJNQzorSgPm0xF+wO/ElnT0KhD 82e66OLby+5SW/mWNCsPjRvAs8/70iHvjErlZSqUSj8u0DRQGFljYmv7kQ5QRIoG jUbrSQ8OKE8DFMeus3dQ =Chg3 -----END PGP SIGNATURE-----