[Pkg-cacti-maint] Bug#833420: cacti: Incomplete fix for CVE-2016-2313

Salvatore Bonaccorso carnil at debian.org
Thu Aug 4 06:22:30 UTC 2016


Source: cacti
Version: 0.8.8h+ds1-4
Severity: important
Tags: security upstream
Forwarded: http://bugs.cacti.net/view.php?id=2697

Hi Paul,

As originally reported to [0,1] the fix for CVE-2016-2313 seems
incomplete. This affects the unstable version and the version which is
waiting in jessie-proposed-updates.

Filling the bug to track the issue.

 [0] https://lists.debian.org/debian-lts/2016/07/msg00164.html
 [1] http://bugs.cacti.net/view.php?id=2697

Regards,
Salvatore



More information about the Pkg-cacti-maint mailing list