[Secure-testing-team] Bug#720632: znc: CVE-2013-2130: NULL pointer dereference vulnerabilities

Salvatore Bonaccorso carnil at debian.org
Sat Aug 24 07:37:38 UTC 2013


Package: znc
Version: 1.0-4
Severity: important
Tags: security upstream patch

Hi,

the following vulnerability was published for znc.

CVE-2013-2130[0]:
null pointer dereference in webadmin

See references for additional information and a patch. This only
affectes znc 1.0.

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] http://security-tracker.debian.org/tracker/CVE-2013-2130
[1] https://github.com/znc/znc/commit/2bd410ee5570cea127233f1133ea22f25174eb28
[2] http://www.openwall.com/lists/oss-security/2013/05/30/3

Regards,
Salvatore



More information about the Secure-testing-team mailing list