ZNC: Denial of service Multiple vulnerabilities in ZNC could lead to Denial of Service. znc 2014-12-19 2014-12-19 471738 507794 remote 1.2-r1 1.2-r1

ZNC is an advanced IRC bouncer.

Multiple NULL pointer dereferences have been found in ZNC.

A remote attacker could send a specially crafted request, possibly resulting in a Denial of Service condition.

There is no known workaround at this time.

All ZNC users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=net-irc/znc-1.2-r1"
CVE-2013-2130 CVE-2014-9403 BlueKnight ackle