Candidate: CVE-2013-2130 PublicDate: 2014-06-05 20:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2130 http://www.openwall.com/lists/oss-security/2013/05/30/3 Description: ZNC 1.0 allows remote authenticated users to cause a denial of service (NULL pointer reference and crash) via a crafted request to the (1) editnetwork, (2) editchan, (3) addchan, or (4) delchan page in modules/webadmin.cpp. Ubuntu-Description: Notes: jdstrand> 1.0 and higher affected Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=720632 https://bugs.launchpad.net/ubuntu/+source/znc/+bug/1268658 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_znc: upstream: https://github.com/znc/znc/commit/2bd410ee5570cea127233f1133ea22f25174eb28 upstream_znc: released (1.0-5) lucid_znc: ignored (reached end-of-life) precise_znc: not-affected quantal_znc: not-affected (0.206-2) raring_znc: released (1.0-2ubuntu1.1) saucy_znc: not-affected (1.0-5) devel_znc: not-affected