Debian Security Advisory DSA 3063-1 (quassel - security update)

Summary
An out-of-bounds read vulnerability was discovered in Quassel-core, one of the components of the distributed IRC client Quassel. An attacker can send a crafted message that crash to component causing a denial of services or disclosure of information from process memory.
Solution
For the stable distribution (wheezy), this problem has been fixed in version 0.8.0-1+deb7u3. For the unstable distribution (sid), this problem has been fixed in version 0.10.0-2.1 (will be available soon). We recommend that you upgrade your quassel packages.
Insight
Quassel is a modern, cross-platform, distributed IRC client, meaning that one or more clients can attach to and detach from the central core. It's much like the popular combination of screen and a text-based IRC client such as WeeChat or irssi, but graphical.
Affected
quassel on Debian Linux
Detection
This check tests the installed software version using the apt package manager.
References