Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 332535 (CVE-2010-2812) - <net-irc/znc-0.094: Denial of Service Vulnerabilities (CVE-2010-{2812,2934})
Summary: <net-irc/znc-0.094: Denial of Service Vulnerabilities (CVE-2010-{2812,2934})
Status: RESOLVED FIXED
Alias: CVE-2010-2812
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: High minor (vote)
Assignee: Gentoo Security
URL: http://secunia.com/advisories/40919/
Whiteboard: B3 [noglsa]
Keywords:
Depends on:
Blocks:
 
Reported: 2010-08-12 21:12 UTC by Tim Sammut (RETIRED)
Modified: 2010-09-29 21:29 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Tim Sammut (RETIRED) gentoo-dev 2010-08-12 21:12:30 UTC
Some vulnerabilities have been reported in ZNC, which can be exploited by malicious users and malicious people to cause a DoS (Denial of Service).

The vulnerabilities are caused due to ZNC not correctly handling certain exceptions related to "substr()" calls, which can be exploited to crash ZNC by e.g. sending a "PING" command without parameters or connecting to a malicious IRC server.

The vulnerabilities are reported in version 0.092. Other versions may also be affected.

http://znc.svn.sourceforge.net/viewvc/znc?view=revision&revision=2093
http://znc.svn.sourceforge.net/viewvc/znc?view=revision&revision=2095
Comment 1 Alex Alexander (RETIRED) gentoo-dev 2010-08-14 22:44:47 UTC
added patch in =net-irc/znc-0.092-r1, using the upstream commits reported.

wired * gentoo-x86/net-irc/znc/ (files/znc-0.092-dos-fix.patch ChangeLog znc-0.092-r1.ebuild): 
fixed security bug #332535
Comment 2 Tim Sammut (RETIRED) gentoo-dev 2010-08-28 21:06:09 UTC
Arches, please test and mark stable:
=net-irc/znc-0.094
Target keywords : "amd64 x86"
Comment 3 Markos Chandras (RETIRED) gentoo-dev 2010-08-28 22:41:58 UTC
amd64 done
Comment 4 Paweł Hajdan, Jr. (RETIRED) gentoo-dev 2010-08-28 23:32:21 UTC
x86 stable, all arches done
Comment 5 Stefan Behte (RETIRED) gentoo-dev Security 2010-09-03 22:30:56 UTC
CVE-2010-2812 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-2812):
  Client.cpp in ZNC 0.092 allows remote attackers to cause a denial of
  service (exception and daemon crash) via a PING command that lacks an
  argument.

CVE-2010-2934 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-2934):
  Multiple unspecified vulnerabilities in ZNC 0.092 allow remote
  attackers to cause a denial of service (exception and daemon crash)
  via unknown vectors related to "unsafe substr() calls."

Comment 6 Stefan Behte (RETIRED) gentoo-dev Security 2010-09-29 21:19:10 UTC
GLSA vote: NO.
Comment 7 Pierre-Yves Rofes (RETIRED) gentoo-dev 2010-09-29 21:29:35 UTC
no too, closing.