The process_chat_input function in TinTin++ 1.97.9 and WinTin++ 1.97.9 allows remote attackers to cause a denial of service (application crash) via a YES message without a newline character, which triggers a NULL dereference.
| Software | From | Fixed in |
|---|---|---|
| tintin / wintin++ | 1.97.9 | 1.97.9.x |
| tintin / tintin++ | 1.97.9 | 1.97.9.x |