CVE-2012-0033
EPSS 0.89%
Description
The CBounceDCCMod::OnPrivCTCP function in bouncedcc.cpp in the bouncedcc module in ZNC 0.200 and 0.202 allows remote attackers to cause a denial of service (crash) via a crafted DCC RESUME request.
How to fix CVE-2012-0033
To remediate CVE-2012-0033, upgrade the affected package to a fixed version below.
- Debian/znc—upgrade to 0.202-2 or later
Is CVE-2012-0033 being exploited?
Low — EPSS is 0.9%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 0.202-2