CRLF injection vulnerability in Quassel Core before 0.3.0.3 allows remote attackers to spoof IRC messages as other users via a crafted CTCP message.
https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00354.html
https://exchange.xforce.ibmcloud.com/vulnerabilities/46195
http://www.vupen.com/english/advisories/2008/3164
http://www.securityfocus.com/bid/31973
http://www.securityfocus.com/archive/1/497884
http://www.securityfocus.com/archive/1/497882/30/0/threaded
http://wouter.coekaerts.be/site/security/quassel-ctcp
http://secunia.com/advisories/32692
http://secunia.com/advisories/32470