Bugzilla – Full Text Bug Listing |
Summary: | VUL-0: nagios: XSS in config.c | ||
---|---|---|---|
Product: | [Novell Products] SUSE Security Incidents | Reporter: | Thomas Biege <thomas> |
Component: | General | Assignee: | Security Team bot <security-team> |
Status: | RESOLVED FIXED | QA Contact: | Security Team bot <security-team> |
Severity: | Major | ||
Priority: | P3 - Medium | CC: | lars.vogdt, security-team |
Version: | unspecified | ||
Target Milestone: | --- | ||
Hardware: | Other | ||
OS: | Other | ||
Whiteboard: | maint:released:11.4:42058 | ||
Found By: | Development | Services Priority: | |
Business Priority: | Blocker: | --- | |
Marketing QA Status: | --- | IT Deployment: | --- |
Description
Thomas Biege
2011-06-03 09:55:13 UTC
*** Bug 698171 has been marked as a duplicate of this bug. *** ping the affected code in config.c was added in nagios 3.2.2, therefore only openSUSE 11.4 is affected. ~> osc rq list 75406 State:new By:lrupp When:2011-07-05T13:45:06 submit: home:lrupp:branches:openSUSE:11.4:Update:Test/nagios -> openSUSE:11.4:Update:Test Descr: - added nagios-3.2.3-CVE-2011-1523.patch to fix CVE-2011-1523 (bnc#682966) - patch fixes also CVE-2011-2179 (bnc#697895) => reassigning This is an autogenerated message for OBS integration: This bug (697895) was mentioned in https://build.opensuse.org/request/show/75405 11.4 / nagios https://build.opensuse.org/request/show/75406 11.4 / nagios Update released for: nagios, nagios-debuginfo, nagios-debugsource, nagios-devel, nagios-www Products: openSUSE 11.4 (debug, i586, x86_64) updates released |