[Git][security-tracker-team/security-tracker][master] CVE-2023-49088/cacti: reference additional patches
Sylvain Beucler (@beuc)
beuc at debian.org
Thu Feb 22 16:40:38 GMT 2024
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker
Commits:
296cb887 by Sylvain Beucler at 2024-02-22T17:39:49+01:00
CVE-2023-49088/cacti: reference additional patches
Despite the reference to CVE-2023-49088 in
56f9d99e6e5ab434ea18fa344236f41e78f99c59, that patch doesn't fix the
tooltip issue. This is done with the commit introducing purify.js.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -11552,6 +11552,8 @@ CVE-2023-49088 (Cacti is an open source operational monitoring and fault managem
NOTE: Caused by an incomplete fix for CVE-2023-39515
NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-q7g7-gcf6-wh4x
NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-hrg9-qqqx-wc4h (CVE-2023-39515)
+ NOTE: https://github.com/Cacti/cacti/commit/58a980f335980ab57659420053d89d4e721ae3fc (release/1.2.26)
+ NOTE: https://github.com/Cacti/cacti/commit/73d9a60e24d6d826e6343b94d833b48c28b68643 (release/1.2.26)
NOTE: https://github.com/Cacti/cacti/commit/56f9d99e6e5ab434ea18fa344236f41e78f99c59 (1.2.x)
CVE-2023-49085 (Cacti provides an operational monitoring and fault management framewor ...)
- cacti 1.2.26+ds1-1
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/296cb88759992e5bcbf54127cb3d9a03d79a024a
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/296cb88759992e5bcbf54127cb3d9a03d79a024a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240222/5fa2e302/attachment.htm>
More information about the debian-security-tracker-commits
mailing list