CVE-2017-8073

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
23/04/2017
Last modified:
20/04/2025

Description

WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:weechat:weechat:*:*:*:*:*:*:*:* 1.7.1 (excluding)
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*