Buffer Overflow Vulnerability in WeeChat Before 4.4.2
CVE-2024-46613
9.8CRITICAL
What is CVE-2024-46613?
WeeChat versions prior to 4.4.2 are vulnerable to an integer overflow that can lead to a buffer overflow in core/core-string.c. This vulnerability is triggered when the number of items in a list exceeds two billion, impacting several functions including string_free_split_shared, string_free_split, string_free_split_command, and string_free_split_tags. Exploitation of this vulnerability could result in unintended behavior or crashes within the application, compromising system stability and security.
