/[advisories]/20335.adv
ViewVC logotype

Contents of /20335.adv

Parent Directory Parent Directory | Revision Log Revision Log


Revision 5536 - (show annotations) (download)
Tue Apr 4 06:30:57 2017 UTC (7 years ago) by neoclust
File size: 611 byte(s)
MGASA-2017-0101: munin-2.0.25-1.1.mga5
1 type: security
2 subject: Updated munin packages fix security vulnerability
3 CVE:
4 - CVE-2017-6188
5 src:
6 5:
7 core:
8 - munin-2.0.25-1.1.mga5
9 description: |
10 Stevie Trujillo discovered a local file write vulnerability in munin, a
11 network-wide graphing framework, when CGI graphs are enabled. GET
12 parameters are not properly handled, allowing to inject options into
13 munin-cgi-graph and overwriting any file accessible by the user running
14 the cgi-process (CVE-2017-6188).
15 references:
16 - https://bugs.mageia.org/show_bug.cgi?id=20335
17 - https://www.debian.org/security/2017/dsa-3794
18 ID: MGASA-2017-0101

  ViewVC Help
Powered by ViewVC 1.1.30