CVE Database
/

CVE-2014-9403

Back to search

CVE-2014-9403

Published: Dec 19, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

The CWebAdminMod::ChanPage function in modules/webadmin.cpp in ZNC before 1.4 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) by adding a channel with the same name as an existing channel but without the leading # character, related to a "use-after-delete" error.

VendorProductVersions

n/a

n/a

affected
n/a

References

MDVSA-2015:013
vendor-advisory
x_refsource_MANDRIVA
66926
vdb-entry
x_refsource_BID
57795
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now