cacti 0.8.6i-3ubuntu0.2 source package in Ubuntu

Changelog

cacti (0.8.6i-3ubuntu0.2) feisty-security; urgency=low

  * SECURITY UPDATE: (LP: #192199)
    + CVE-2008-0783: Multiple cross-site scripting (XSS) vulnerabilities in
      Cacti 0.8.7 before 0.8.7b and 0.8.6 before 0.8.6k allow remote attackers to
      inject arbitrary web script or HTML via the (1) view_type parameter to
      graph.php, (2) filter parameter to graph_view.php, and (3) action and
      login_username parameters to index.php/login.
    + CVE-2008-0784: graph.php in Cacti 0.8.7 before 0.8.7b and 0.8.6 before
      0.8.6k allows remote attackers to obtain the full path via an invalid
      local_graph_id parameter and other unspecified vectors.
  * debian/patches/11_CVE-2008-0783_CVE-2008-0784.dpatch: applied patch by
    upstream. (backported from 0.8.6j)
    (Link: http://www.cacti.net/downloads/patches/0.8.6j/multiple_vulnerabilities-0.8.6j.patch)
  * References:
    CVE-2008-0783
    CVE-2008-0784

 -- Stephan Hermann <email address hidden>   Fri, 15 Feb 2008 21:10:36 +0100

Upload details

Uploaded by:
Stephan RĂ¼gamer
Uploaded to:
Feisty
Original maintainer:
MOTU
Architectures:
all
Section:
web
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Feisty: [FULLYBUILT] i386

Downloads

File Size SHA-256 Checksum
cacti_0.8.6i.orig.tar.gz 1.1 MiB 3998dae625314309c58cea0fc1e48fb08cf4c2973013413f2726cdc5cf1ac6ac
cacti_0.8.6i-3ubuntu0.2.diff.gz 36.9 KiB e65627bc889f10d67ce5a15add3c06c22e22914f56ae2598fdde8cf3db621df7
cacti_0.8.6i-3ubuntu0.2.dsc 670 bytes e919dfdaef38e1843de856e6966afadbad6aefac11a87e3891fffe8fadd61911

View changes file

Binary packages built by this source

cacti: No summary available for cacti in ubuntu feisty.

No description available for cacti in ubuntu feisty.