ZNC NULL Pointer Dereference Denial Of Service Vulnerability
BID:40982
Info
ZNC NULL Pointer Dereference Denial Of Service Vulnerability
| Bugtraq ID: | 40982 |
| Class: | Unknown |
| CVE: |
CVE-2010-2448 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 13 2010 12:00AM |
| Updated: | Apr 13 2015 10:16PM |
| Credit: | Suschman |
| Vulnerable: |
ZNC ZNC 0.090 Debian Linux 5.0 sparc Debian Linux 5.0 s/390 Debian Linux 5.0 powerpc Debian Linux 5.0 mipsel Debian Linux 5.0 mips Debian Linux 5.0 m68k Debian Linux 5.0 ia-64 Debian Linux 5.0 ia-32 Debian Linux 5.0 hppa Debian Linux 5.0 armel Debian Linux 5.0 arm Debian Linux 5.0 amd64 Debian Linux 5.0 alpha Debian Linux 5.0 |
| Not Vulnerable: | |
Discussion
ZNC NULL Pointer Dereference Denial Of Service Vulnerability
ZNC is prone to a remote denial-of-service vulnerability caused by a NULL-pointer dereference.
An attacker may exploit this issue to crash the application, resulting in denial-of-service conditions. Given the nature of this issue, the attacker may also be able to run arbitrary code, but this has not been confirmed.
The issue affects ZNC 0.090; other versions may also be affected.
ZNC is prone to a remote denial-of-service vulnerability caused by a NULL-pointer dereference.
An attacker may exploit this issue to crash the application, resulting in denial-of-service conditions. Given the nature of this issue, the attacker may also be able to run arbitrary code, but this has not been confirmed.
The issue affects ZNC 0.090; other versions may also be affected.
Exploit / POC
ZNC NULL Pointer Dereference Denial Of Service Vulnerability
An attacker can use readily available tools to exploit this issue.
An attacker can use readily available tools to exploit this issue.
Solution / Fix
ZNC NULL Pointer Dereference Denial Of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Debian Linux 5.0 alpha
Debian Linux 5.0 amd64
Debian Linux 5.0 ia-32
Debian Linux 5.0 hppa
Debian Linux 5.0 mips
Debian Linux 5.0 ia-64
Debian Linux 5.0 s/390
Debian Linux 5.0 arm
Debian Linux 5.0 mipsel
Debian Linux 5.0 powerpc
Debian Linux 5.0 armel
Debian Linux 5.0 sparc
Solution:
Updates are available. Please see the references for more information.
Debian Linux 5.0 alpha
-
Debian znc_0.058-2+lenny4_alpha.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ alpha.deb
Debian Linux 5.0 amd64
-
Debian znc_0.058-2+lenny4_amd64.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ amd64.deb
Debian Linux 5.0 ia-32
-
Debian znc_0.058-2+lenny4_i386.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ i386.deb
Debian Linux 5.0 hppa
-
Debian znc_0.058-2+lenny4_hppa.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ hppa.deb
Debian Linux 5.0 mips
-
Debian znc_0.058-2+lenny4_mips.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ mips.deb
Debian Linux 5.0 ia-64
-
Debian znc_0.058-2+lenny4_ia64.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ ia64.deb
Debian Linux 5.0 s/390
-
Debian znc_0.058-2+lenny4_s390.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ s390.deb
Debian Linux 5.0 arm
-
Debian znc_0.058-2+lenny4_arm.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ arm.deb
Debian Linux 5.0 mipsel
-
Debian znc_0.058-2+lenny4_mipsel.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ mipsel.deb
Debian Linux 5.0 powerpc
-
Debian znc_0.058-2+lenny4_powerpc.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ powerpc.deb
Debian Linux 5.0 armel
-
Debian znc_0.058-2+lenny4_armel.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ armel.deb
Debian Linux 5.0 sparc
-
Debian znc_0.058-2+lenny4_sparc.deb
http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny4_ sparc.deb
References
ZNC NULL Pointer Dereference Denial Of Service Vulnerability
References:
References: