FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

znc -- Authenticated users can trigger an application crash

Affected packages
1.8.0 <= znc < 1.8.1

Details

VuXML ID 10a24ce0-ab68-11ea-b9b8-641c67a117d8
Discovery 2020-06-02
Entry 2020-06-10

Mitre reports:

ZNC 1.8.0 up to 1.8.1-rc1 allows attackers to trigger an application crash (with a NULL pointer dereference) if echo-message is not enabled and there is no network.

References

CVE Name CVE-2020-13775
URL https://wiki.znc.in/ChangeLog/1.8.1