Sync cacti 0.8.8b+dfsg-4 (universe) from Debian unstable (main)

Bug #1303492 reported by Jackson Doak
10
This bug affects 1 person
Affects Status Importance Assigned to Milestone
cacti (Ubuntu)
Fix Released
Wishlist
Logan Rosen

Bug Description

Please sync cacti 0.8.8b+dfsg-4 (universe) from Debian unstable (main)

Changelog entries since current trusty version 0.8.8b+dfsg-3:

cacti (0.8.8b+dfsg-4) unstable; urgency=high

  * Security update (Closes: 743565)
    - CVE-2014-2326 Cross-site scripting (XSS) vulnerability
    - CVE-2014-2328 Unspecified Remote Command Execution Vulnerability
    - CVE-2014-2708 SQL injection
    - CVE-2014-2709 Unspecified Remote Command Execution Vulnerability
  * Bump standards (no changes needed)
  * Fix VCS-Browser field
  * Fix license paragraph of jstree (Thanks lintian)

 -- Paul Gevers <email address hidden> Sat, 05 Apr 2014 13:03:22 +0200

Jackson Doak (noskcaj)
Changed in cacti (Ubuntu):
importance: Undecided → Wishlist
Revision history for this message
Logan Rosen (logan) wrote :

Looking into this.

Changed in cacti (Ubuntu):
status: New → In Progress
assignee: nobody → Logan Rosen (logan)
Revision history for this message
Logan Rosen (logan) wrote :

This bug was fixed in the package cacti - 0.8.8b+dfsg-5
Sponsored for Jackson Doak (noskcaj)

---------------
cacti (0.8.8b+dfsg-5) unstable; urgency=high

  * Fix postinst for lighttpd setups which fail on update due to
    lighty-enable-mod exiting with non-zero if config is already loaded
    (Closes: 743727)

 -- Paul Gevers <email address hidden> Sun, 06 Apr 2014 19:59:12 +0200

cacti (0.8.8b+dfsg-4) unstable; urgency=high

  * Security update (Closes: 743565)
    - CVE-2014-2326 Cross-site scripting (XSS) vulnerability
    - CVE-2014-2328 Unspecified Remote Command Execution Vulnerability
    - CVE-2014-2708 SQL injection
    - CVE-2014-2709 Unspecified Remote Command Execution Vulnerability
  * Bump standards (no changes needed)
  * Fix VCS-Browser field
  * Fix license paragraph of jstree (Thanks lintian)

 -- Paul Gevers <email address hidden> Sat, 05 Apr 2014 13:03:22 +0200

Changed in cacti (Ubuntu):
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.