Debian 10241 Published by

A weechat security update has been released for Debian GNU/Linux 8 LTS to fix an issue with crafted messages, that could result in a buffer overflow and application crash.



Package : weechat
Version : 1.0.1-1+deb8u3
CVE ID : CVE-2020-8955 CVE-2020-9759 CVE-2020-9760

Several issues have been found in weechat, a fast, light and extensible
chat client.
All issues are about crafted messages, that could result in
a buffer overflow and application crash. This could cause a denial of
service or possibly have other impact.

For Debian 8 "Jessie", these problems have been fixed in version
1.0.1-1+deb8u3.

We recommend that you upgrade your weechat packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at:   https://wiki.debian.org/LTS