openSUSE Security Update : irssi (openSUSE-2021-587)

medium Nessus Plugin ID 149564

Language:

Synopsis

The remote openSUSE host is missing a security update.

Description

This update for irssi fixes the following issues :

irssi was updated to 1.2.3 (boo#1184848)

- Fix the compilation of utf8proc (#1021)

- Fix wrong call to free. By Zero King (#1076)

- Fix a colour reset in true colour themes when encountering mIRC colours (#1059)

- Fix memory leak on malformed CAP requests (#1120)

- Fix an erroneous free of SASL data. Credit to Oss-Fuzz (#1128, #1130)

- Re-set the TLS flag when reconnecting (#1027, #1134)

- Fix the scrollback getting stuck after /clear (#1115, #1136)

- Fix the input of Ctrl+C as the first character (#1153, #1154)

- Fix crash on quit during unloading of modules on certain platforms (#1167)

- Fix Irssi freezing input after Ctrl+Space on GLib >2.62 (#1180, #1183)

- Fix layout of IDCHANs. By Lauri Tirkkonen (#1197)

- Fix crash when server got reconnected before it was properly connected (#1210, #1211)

- Fix multiple identical active caps (#1249)

- Minor help corrections (#1156, #1213, #1214, #1255)

- Remove erroneous colour in the colorless theme. Reported and fixed by Nutchanon Wetchasit (#1220, #1221)

- Fix invalid bounds calculation when editing the text entry. Found and fixed by Sergey Valentey (#1269)

- Fix passing of negative size in buffer writes. Found and fixed by Sergey Valentey (#1270)

- Fix Irssi freezing on slow hardware and fast DCC transfers (#159, #1271)

- Fix compilation on Solaris (#1291)

- Fix NULL pointer dereference when receiving broken JOIN record. Credit to Oss-Fuzz (#1292)

- Fix crash on /connect to some sockets (#1239, #1298)

- Fix Irssi rendering on Apple ARM. By Misty De Méo (#1267, #1268, #1290)

- Fix crash on /lastlog with broken lines (#1281, #1299)

- Fix memory leak when receiving bogus SASL authentication data. Found and fixed by Sergey Valentey (#1293)

Solution

Update the affected irssi packages.

See Also

https://bugzilla.opensuse.org/show_bug.cgi?id=1184848

Plugin Details

Severity: Medium

ID: 149564

File Name: openSUSE-2021-587.nasl

Version: 1.1

Type: local

Agent: unix

Published: 5/18/2021

Updated: 5/18/2021

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Nessus

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:irssi, p-cpe:/a:novell:opensuse:irssi-debuginfo, p-cpe:/a:novell:opensuse:irssi-debugsource, p-cpe:/a:novell:opensuse:irssi-devel, cpe:/o:novell:opensuse:15.2

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 4/19/2021

Vulnerability Publication Date: 4/19/2021