Debian Security Advisory

DLA-2157-1 weechat -- LTS security update

Date Reported:
24 Mar 2020
Affected Packages:
weechat
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2020-8955, CVE-2020-9759, CVE-2020-9760.
More information:

Several issues have been found in weechat, a fast, light and extensible chat client. All issues are about crafted messages, that could result in a buffer overflow and application crash. This could cause a denial of service or possibly have other impact.

For Debian 8 Jessie, these problems have been fixed in version 1.0.1-1+deb8u3.

We recommend that you upgrade your weechat packages.

Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS