More information about this security flaw is available in the following bug: https://bugzilla.redhat.com/show_bug.cgi?id=2295622 Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
This package has changed maintainer in Fedora. Reassigning to the new maintainer of this component.
Hello is it possible to get version 1.9.1 packages for F40? As it's been now over 2 months that znc-modtcl has had this RCE.
I have opened PRs for EPEL8/9. These contain the backported fix for CVE-2024-39844. Please see below: https://src.fedoraproject.org/rpms/znc/pull-request/10 https://src.fedoraproject.org/rpms/znc/pull-request/9
FEDORA-EPEL-2025-f3a22dfde8 (znc-1.8.2-16.el9) has been submitted as an update to Fedora EPEL 9. https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-f3a22dfde8
FEDORA-EPEL-2025-ad4c7abaa9 (znc-1.8.2-16.el8) has been submitted as an update to Fedora EPEL 8. https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-ad4c7abaa9
FEDORA-EPEL-2025-ad4c7abaa9 has been pushed to the Fedora EPEL 8 testing repository. You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-ad4c7abaa9 See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.
FEDORA-EPEL-2025-f3a22dfde8 has been pushed to the Fedora EPEL 9 testing repository. You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-f3a22dfde8 See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.
FEDORA-EPEL-2025-ad4c7abaa9 (znc-1.8.2-16.el8) has been pushed to the Fedora EPEL 8 stable repository. If problem still persists, please make note of it in this bug report.
FEDORA-EPEL-2025-f3a22dfde8 (znc-1.8.2-16.el9) has been pushed to the Fedora EPEL 9 stable repository. If problem still persists, please make note of it in this bug report.