CVE-2009-0759
Published: 3 March 2009
Multiple CRLF injection vulnerabilities in webadmin in ZNC before 0.066 allow remote authenticated users to modify the znc.conf configuration file and gain privileges via CRLF sequences in the quit message and other vectors.
Priority
Status
Package | Release | Status |
---|---|---|
znc Launchpad, Ubuntu, Debian |
dapper |
Does not exist
|
gutsy |
Needs triage
(reached end-of-life)
|
|
hardy |
Ignored
(reached end-of-life)
|
|
intrepid |
Needs triage
(reached end-of-life)
|
|
jaunty |
Ignored
(reached end-of-life)
|
|
karmic |
Not vulnerable
(0.074-1)
|
|
lucid |
Not vulnerable
|
|
maverick |
Not vulnerable
|
|
natty |
Not vulnerable
|
|
oneiric |
Not vulnerable
|
|
precise |
Not vulnerable
|
|
upstream |
Released
(0.066)
|