Mageia Bugzilla – Bug 11034
znc new security issue CVE-2013-2130
Last modified: 2013-08-22 20:18:56 CEST
Fedora has issued an advisory on August 2:
Mageia 2 is not affected, as only version 1.0 of znc is affected.
Patched packages uploaded for Mageia 3 and Cauldron.
Updated znc packages fix security vulnerability:
Multiple vulnerabilities were reported in ZNC version 1.0 which can be exploited
by malicious authenticated users to cause a denial of service. These flaws are
due to errors when handling the "editnetwork", "editchan", "addchan", and
"delchan" page requests; they can be exploited to cause a NULL pointer
Updated packages in core/updates_testing:
Steps to Reproduce:
Testing complete mga3 64
No PoC's but the CVE is to do with the webadmin interface so checking that works.
$ znc --makeconf
answer all the questions it asks and allow it to start.
created with user/password znctest/znctest
Connected to the running znc instance with an irc client with the server as localhost and the port znc was configured to listen on (I used 3456) and the server password set to znctest/freenode:znctest
Logged into the web interface at https://localhost:3456 and made sure it was still able to edit channels and networks.
Killed znc with 'killall znc'
It does seem to be missing a systemd service so i'll create a new bug for that.
Testing complete mga3_32, ok for me nothing to report.
same as comment 1
Validating. Advisory from comment 0 uploaded.
Could sysadmin please push from 3 core/updates_testing to updates
bug 11040 created for the systemd service