UbuntuUpdates.org

Package "znc-tcl"

Name: znc-tcl

Description:

advanced modular IRC bouncer (Tcl extension)

Latest version: 1.8.2-2ubuntu0.1
Release: jammy (22.04)
Level: security
Repository: universe
Head package: znc
Homepage: https://www.znc.in/

Links


Download "znc-tcl"


Other versions of "znc-tcl" in Jammy

Repository Area Version
base universe 1.8.2-2build5
updates universe 1.8.2-2ubuntu0.1

Changelog

Version: 1.8.2-2ubuntu0.1 2024-09-04 18:07:00 UTC

  znc (1.8.2-2ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: RCE in modtcl module
    - d/p/CVE-2024-39844.patch: Sanitize input to Tcl_Eval.
      Based on upstream patch.
    - CVE-2024-39844

 -- Julia Sarris <email address hidden> Wed, 04 Sep 2024 09:24:47 -0400

CVE-2024-39844 In ZNC before 1.9.1, remote code execution can occur in modtcl via a KICK.



About   -   Send Feedback to @ubuntu_updates