• [SECURITY] [DSA 4252-1] znc security update

    From Moritz Muehlenhoff@1:229/2 to All on Wed Jul 18 23:30:01 2018
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-4252-1 [email protected] https://www.debian.org/security/ Moritz Muehlenhoff
    July 18, 2018 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : znc
    CVE ID : CVE-2018-14055 CVE-2018-14056

    Jeriko One discovered two vulnerabilities in the ZNC IRC bouncer which
    could result in privilege escalation or denial of service.

    For the stable distribution (stretch), these problems have been fixed in version 1.6.5-1+deb9u1.

    We recommend that you upgrade your znc packages.

    For the detailed security status of znc please refer to
    its security tracker page at:
    https://security-tracker.debian.org/tracker/znc

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: [email protected]
    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAltPr0wACgkQEMKTtsN8 TjYAnw/9EcA5Y741UnCW651uM7X8a5nIDN5OpxGg8/n9kpLKydbsWeJEPZ/Bju/W RoylTtIskxCgE41Y6RyCw1Tun+1lbJGj9XM+JZIozHDYfaX4YxsAmI21rero6uLt tZxkood7elNC2e0bU2knvwNMMBCgphjasY/YYOMAieLi7zN96o/+JTakJGHox/z+ pE+YHHSai/lLUCgZM7EObzckY0TxlEpXjfJxxLG3Wg/sZV7DeYhtWm/FOnNEUG0p sDGl82Xxl/0tMpDiD+aCeKJJTmtIpoob9/ypzgLRtwIr4wegqZkGcKnj6VcgY2I4 jL1g2LF6zmKS0lZfWNaJsEs41Wx6Jdu7wb4I7VyGXkpf7t6HeEQ40lZkWgQUUoYX EpDJMUNZN4j6i8HZ81aVzCMdg5hr6FDyNahH6LrnYL+UMVqsYwBFzWKey5wIMUER imiBRBnV4+jt2JDLLY4VfxQVIeeUG1v2hL4sSNLpPcxgtOkpp+HTemfIVMIJpwvb l/bTnys98AmtcsRHqFJMXkDd5omWbyntlBrL8pnCHWrVbCSpxhxBSzrsv3bPOHPe PXD7ZyvjyOw0Q5ieYrT1uMFYiCZabkPQjjC8gv66Q1nOuJIBTTVYxtm1MQV3V5Yg atR4cXlm/wrc8NZjYIgcxojPfds9lmICDGFQ0P9LO1ApnRM+xfc=
    =dpe3
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)