Vulnerability Name:

CVE-2009-1959 (CCN-51184)

Assigned:2009-05-29
Published:2009-05-29
Updated:2017-08-17
Summary:Off-by-one error in the event_wallops function in fe-common/irc/fe-events.c in irssi 0.8.13 allows remote IRC servers to cause a denial of service (crash) via an empty command, which triggers a one-byte buffer under-read and a one-byte buffer underflow.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
4.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:U/RC:UR)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
4.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:U/RC:UR)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-189
Vulnerability Consequences:Denial of Service
References:Source: CONFIRM
Type: Exploit, Vendor Advisory
http://bugs.irssi.org/index.php?do=details&task_id=662

Source: MITRE
Type: CNA
CVE-2009-1959

Source: SUSE
Type: UNKNOWN
SUSE-SR:2009:012

Source: SECUNIA
Type: UNKNOWN
35685

Source: SECUNIA
Type: UNKNOWN
35812

Source: SECUNIA
Type: UNKNOWN
36152

Source: CCN
Type: SECTRACK ID: 1022410
Irssi Underflow in event_wallops() Lets Remote Users Deny Service

Source: CCN
Type: GLSA-200909-13
irssi: Execution of arbitrary code

Source: CCN
Type: irssi Web site
irssi

Source: CONFIRM
Type: Exploit, Vendor Advisory
http://www.irssi.org/ChangeLog

Source: MANDRIVA
Type: UNKNOWN
MDVSA-2009:133

Source: CCN
Type: oss-security Mailing List, Fri, 29 May 2009 16:24:48 -0400 (EDT)
CVE Request (irssi)

Source: MLIST
Type: UNKNOWN
[oss-security] 20090529 CVE Request (irssi)

Source: CCN
Type: OSVDB ID: 54977
irssi fe-common/irc/fe-events.c event_wallops Function Off-by-one Underflow DoS

Source: BID
Type: UNKNOWN
35399

Source: CCN
Type: BID-35399
Irssi 'WALLOPS' Message Off By One Heap Memory Corruption Vulnerability

Source: SECTRACK
Type: UNKNOWN
1022410

Source: CCN
Type: USN-800-1
irssi vulnerability

Source: UBUNTU
Type: UNKNOWN
USN-800-1

Source: VUPEN
Type: UNKNOWN
ADV-2009-1596

Source: CCN
Type: xorl Bugs Blog May 28, 2009
irssi event_wallops() off-by-one Read/Write

Source: MISC
Type: Exploit
http://xorl.wordpress.com/2009/05/28/irssi-event_wallops-off-by-one-readwrite/

Source: XF
Type: UNKNOWN
irssi-eventwallops-dos(51184)

Source: XF
Type: UNKNOWN
irssi-eventwallops-dos(51184)

Source: FEDORA
Type: UNKNOWN
FEDORA-2009-7012

Source: SUSE
Type: SUSE-SR:2009:012
SUSE Security Summary Report

Vulnerable Configuration:Configuration 1:
  • cpe:/a:irssi:irssi:0.8.13:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:irssi:irssi:0.8.13:*:*:*:*:*:*:*
  • AND
  • cpe:/o:gentoo:linux:*:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:6.06::lts:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0::x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0::x86-64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.1:x86_64:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.1:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:8.04::lts:*:*:*:*:*
  • OR cpe:/o:mandriva:linux:2009.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandriva:linux:2009.0:-:x86_64:*:*:*:*:*
  • OR cpe:/o:mandriva:linux:2009.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandriva:linux:2009.1:*:*:*:x86_64:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20091959
    V
    CVE-2009-1959
    2022-06-30
    oval:org.opensuse.security:def:112442
    P
    irssi-0.8.20-3.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:105948
    P
    irssi-0.8.20-3.1 on GA media (Moderate)
    2021-10-01
    oval:org.mitre.oval:def:13908
    P
    USN-800-1 -- irssi vulnerability
    2014-06-30
    BACK
    irssi irssi 0.8.13
    irssi irssi 0.8.13
    gentoo linux *
    mandrakesoft mandrake linux corporate server 3.0
    canonical ubuntu 6.06
    mandrakesoft mandrake linux corporate server 3.0
    mandrakesoft mandrake linux 2008.0
    mandrakesoft mandrake linux 2008.0
    mandrakesoft mandrake linux 2008.1 x86_64
    mandrakesoft mandrake linux 2008.1
    canonical ubuntu 8.04
    mandriva linux 2009.0
    mandriva linux 2009.0 -
    mandriva linux 2009.1
    mandriva linux 2009.1