In certain cases, Irssi before 1.0.5 may fail to verify that a Safe channel ID is long enough, causing reads beyond the end of the string.
https://www.debian.org/security/2017/dsa-4016
https://lists.debian.org/debian-lts-announce/2017/12/msg00022.html