Lack of data validation In konversation
Description
CRLF injection vulnerability in the included media script in Konversation allows user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in the name of the song in a .mp3 file.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 13 | 1.0.1-4 | ||
debian 14 | 1.0.1-4 | ||
debian 12 | 1.0.1-4 | ||
debian 11 | 1.0.1-4 |
Aliases
1. 2. 3. 4. 5.