Multiple vulnerabilities have been found in ZNC, the worst of which could result in privilege escalation.
|Package||net-irc/znc on all architectures|
|Affected versions||< 1.7.1|
|Unaffected versions||>= 1.7.1|
ZNC is an advanced IRC bouncer.
Multiple vulnerabilities have been discovered in ZNC. Please review the CVE identifiers referenced below for details.
A remote attacker could read arbitary files and esclate privileges.
There is no known workaround at this time.
All ZNC users should upgrade to the latest version:
# emerge --sync # emerge --ask --oneshot --verbose ">=net-irc/znc-1.7.1"
July 29, 2018
July 29, 2018: 2