Debian LTS: DLA-1088-1: irssi security update
Summary
CVE-2017-9468
In irssi, when receiving a DCC message without source nick/host, it
attempts to dereference a NULL pointer.
CVE-2017-9469
In irssi, when receiving certain incorrectly quoted DCC files, it tries to
find the terminating quote one byte before the allocated memory.
For Debian 7 "Wheezy", these problems have been fixed in version
0.8.15-5+deb7u2.
We recommend that you upgrade your irssi packages.
Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS