DEBIAN-CVE-2005-0130

Source
https://security-tracker.debian.org/tracker/CVE-2005-0130
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-0130.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2005-0130
Upstream
Published
2005-04-14T04:00:00Z
Modified
2025-09-24T23:52:00.862757Z
Summary
[none]
Details

Certain Perl scripts in Konversation 0.15 allow remote attackers to execute arbitrary commands via shell metacharacters in (1) channel names or (2) song names that are not properly quoted when the user runs IRC scripts.

References

Affected packages

Debian:11 / konversation

Package

Name
konversation
Purl
pkg:deb/debian/konversation?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15-3

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / konversation

Package

Name
konversation
Purl
pkg:deb/debian/konversation?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15-3

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / konversation

Package

Name
konversation
Purl
pkg:deb/debian/konversation?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15-3

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14 / konversation

Package

Name
konversation
Purl
pkg:deb/debian/konversation?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15-3

Ecosystem specific

{
    "urgency": "not yet assigned"
}