CVE-2018-7051 is an out-of-bounds access vulnerability affecting Irssi versions prior to 1.0.7 and 1.1.1, specifically when handling certain nicknames during theme string printing. With a CVSS score of 7.5 (High), this vulnerability can be exploited remotely with low complexity and without user interaction, potentially leading to a high impact on confidentiality. While no active exploits, Metasploit modules, or public exploit code are currently available, and community discussion is minimal, organizations using affected Irssi versions should prioritize patching.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 1.0.7CPE matchmatch criteria | cpe:2.3:a:irssi:irssi:*:*:*:*:*:*:*:* | ||
1.1.0CPE matchmatch criteria | cpe:2.3:a:irssi:irssi:1.1.0:*:*:*:*:*:*:* | ||
7.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:* | ||
9.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* | ||
14.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.