DEBIAN-CVE-2009-0759

Source
https://security-tracker.debian.org/tracker/CVE-2009-0759
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2009-0759.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2009-0759
Upstream
Published
2009-03-03T16:30:05Z
Modified
2025-09-25T00:09:37.655251Z
Summary
[none]
Details

Multiple CRLF injection vulnerabilities in webadmin in ZNC before 0.066 allow remote authenticated users to modify the znc.conf configuration file and gain privileges via CRLF sequences in the quit message and other vectors.

References

Affected packages

Debian:11 / znc

Package

Name
znc
Purl
pkg:deb/debian/znc?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.066-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / znc

Package

Name
znc
Purl
pkg:deb/debian/znc?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.066-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / znc

Package

Name
znc
Purl
pkg:deb/debian/znc?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.066-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14 / znc

Package

Name
znc
Purl
pkg:deb/debian/znc?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.066-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}