[Pkg-cacti-maint] Bug#1095721: cacti: Incomplete fix for CVE-2024-54146

Salvatore Bonaccorso carnil at debian.org
Tue Feb 11 07:41:30 GMT 2025


Source: cacti
Version: 1.2.28+ds1-4
Severity: important
Tags: security upstream
Forwarded: https://github.com/Cacti/cacti/pull/6096
X-Debbugs-Cc: carnil at debian.org, Debian Security Team <team at security.debian.org>

Hi

As reported by Sylvain, the fix for  CVE-2024-54146 was incomplete.

https://github.com/Cacti/cacti/pull/6096
https://github.com/Cacti/cacti/commit/7fa60c03ad4a69c701ac6b77c85a8927df7acd51

Regards,
Salvatore



More information about the Pkg-cacti-maint mailing list