Unrated severityNVD Advisory· Published Nov 19, 2012· Updated Apr 29, 2026
CVE-2012-5854
CVE-2012-5854
Description
Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or hang) and possibly execute arbitrary code via crafted IRC colors that are not properly decoded.
Affected products
4Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
13- weechat.org/security/nvdVendor Advisory
- lists.fedoraproject.org/pipermail/package-announce/2012-November/092228.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2012-November/092490.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2012-November/092536.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2013-01/msg00018.htmlnvd
- lists.opensuse.org/opensuse-updates/2012-11/msg00087.htmlnvd
- osvdb.org/87279nvd
- secunia.com/advisories/51377nvd
- www.mandriva.com/security/advisoriesnvd
- www.openwall.com/lists/oss-security/2012/11/12/2nvd
- www.securityfocus.com/bid/56482nvd
- savannah.nongnu.org/bugs/nvd
- wiki.mageia.org/en/Support/Advisories/MGASA-2012-0330nvd
News mentions
0No linked articles in our index yet.