[Git][security-tracker-team/security-tracker][master] CVE-2023-39360/cacti: precise note

Sylvain Beucler (@beuc) beuc at debian.org
Thu Feb 22 11:37:42 GMT 2024



Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker


Commits:
56b966d9 by Sylvain Beucler at 2024-02-22T12:36:19+01:00
CVE-2023-39360/cacti: precise note

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -30356,7 +30356,7 @@ CVE-2023-39360 (Cacti is an open source operational monitoring and fault managem
 	NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-gx8c-xvjh-9qh4
 	NOTE: Initial fix: https://github.com/cacti/cacti/commit/9696bbd8060c7332b11b709f4dd17e6c3776bba2 (release/1.2.25)
 	NOTE: Final fix: https://github.com/cacti/cacti/commit/bc6dc996745ef0dee3427178c8d87a6402f3fefa (release/1.2.25)
-	NOTE: Attack is usually blocked by browser CORS/CSP policies.
+	NOTE: Attack is usually blocked by browser CORS/CSP policies before https://github.com/Cacti/cacti/commit/137340264ac550d060ef17c4d0794fa4abae1c26 (release/1.2.23)
 CVE-2023-39359 (Cacti is an open source operational monitoring and fault management fr ...)
 	{DSA-5550-1}
 	- cacti 1.2.25+ds1-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/56b966d955358a84963e59965f4fcbe011ae6d72

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/56b966d955358a84963e59965f4fcbe011ae6d72
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240222/ad8af8e6/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list