[Secure-testing-commits] r46583 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sat Nov 26 18:56:12 UTC 2016
Author: carnil
Date: 2016-11-26 18:56:12 +0000 (Sat, 26 Nov 2016)
New Revision: 46583
Modified:
data/CVE/list
Log:
nagios3 removed from unstable
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-11-26 16:42:12 UTC (rev 46582)
+++ data/CVE/list 2016-11-26 18:56:12 UTC (rev 46583)
@@ -11380,7 +11380,7 @@
NOTE: Starting with 5.4.0-1 Debian uses the system copy of libgd
CVE-2016-6209 [Reflected XSS vulnerability and possible phishing vector]
RESERVED
- - nagios3 <unfixed> (bug #831698)
+ - nagios3 <removed> (bug #831698)
[jessie] - nagios3 <no-dsa> (Minor issue)
[wheezy] - nagios3 <no-dsa> (Minor issue)
- icinga <not-affected> (Vulnerable code not present)
@@ -77599,7 +77599,7 @@
CVE-2014-1878 (Stack-based buffer overflow in the cmd_submitf function in cgi/cmd.c ...)
{DSA-2956-1 DLA-461-1 DLA-60-1}
- icinga 1.10.3-1
- - nagios3 <unfixed> (bug #823721)
+ - nagios3 <removed> (bug #823721)
[jessie] - nagios3 <no-dsa> (Minor issue)
CVE-2014-1873
RESERVED
@@ -81765,7 +81765,7 @@
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=686740
NOTE: https://git.gnome.org/browse/gnome-shell/commit/js/ui/screenShield.js?id=209014b083dbe86ed0e0860a6016735571b56f94
CVE-2013-7205 (Off-by-one error in the process_cgivars function in ...)
- - nagios3 <unfixed> (low; bug #771466)
+ - nagios3 <removed> (low; bug #771466)
[jessie] - nagios3 <no-dsa> (Minor issue)
[squeeze] - nagios3 <no-dsa> (Minor issue)
[wheezy] - nagios3 <no-dsa> (Minor issue)
@@ -81923,7 +81923,7 @@
CVE-2013-7108 (Multiple off-by-one errors in Nagios Core 3.5.1, 4.0.2, and earlier, ...)
{DSA-2956-1 DLA-60-1}
- icinga 1.10.2-1 (low)
- - nagios3 <unfixed> (low; bug #771466)
+ - nagios3 <removed> (low; bug #771466)
[jessie] - nagios3 <no-dsa> (Minor issue)
[squeeze] - nagios3 <no-dsa> (Minor issue)
[wheezy] - nagios3 <no-dsa> (Minor issue)
@@ -81933,7 +81933,7 @@
{DSA-2956-1}
- icinga 1.10.2-1 (low)
[squeeze] - icinga <no-dsa> (Minor issue)
- - nagios3 <unfixed> (low)
+ - nagios3 <removed> (low)
[jessie] - nagios3 <no-dsa> (Minor issue)
[squeeze] - nagios3 <no-dsa> (Minor issue)
[wheezy] - nagios3 <no-dsa> (Minor issue)
@@ -165833,7 +165833,7 @@
CVE-2008-4918 (Cross-site scripting (XSS) vulnerability in SonicWALL SonicOS Enhanced ...)
NOT-FOR-US: SonicOS Enhanced
CVE-2008-5027 (The Nagios process in (1) Nagios before 3.0.5 and (2) op5 Monitor ...)
- - nagios3 <unfixed> (unimportant)
+ - nagios3 <removed> (unimportant)
NOTE: the nagios process shouldnt have rights to execute important commands and non-trusted
NOTE: users shouldn't have access to nagios anyway
CVE-2008-5028 (Cross-site request forgery (CSRF) vulnerability in cmd.cgi in (1) ...)
More information about the Secure-testing-commits
mailing list