CVE-2017-15723 is a NULL pointer dereference vulnerability affecting Irssi versions prior to 1.0.5, specifically impacting Debian Linux distributions. This flaw can be triggered by processing overlong nicks or targets within a message. With a CVSSv3 score of 7.5 (High), it poses a significant availability risk (A:H) due to its low attack complexity (AC:L) and network-based attack vector (AV:N), requiring no user interaction (UI:N). There is currently no evidence of active exploitation, nor are there publicly available exploit modules or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.0.4CPE matchmatch criteria | cpe:2.3:a:irssi:irssi:*:*:*:*:*:*:*:* | ||
8.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:* | ||
9.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.