[Pkg-nagios-devel] Bug#504894: Bug#504894: SA32610: Nagios "cmd.cgi" Cross-Site Request Forgery

Alexander Wirt formorer at debian.org
Fri Nov 21 06:04:48 UTC 2008


Raphael Geissert schrieb am Thursday, den 20. November 2008:

> retitle 504894 CVE-2008-5028: Nagios "cmd.cgi" cross-site request forgery
> thanks
> 
> 2008/11/7 Raphael Geissert <atomo64 at gmail.com>:
> [...]
> >
> > A proposed patch is available at [2].
> >
> > If you fix the vulnerability please also make sure to include the SA id (or
> > the CVE id when one is assigned) in the changelog entry.
> 
> This issue has been assigned the following id: CVE-2008-5028, please
> use it instead of the Secunia Advisory when fixing/referring to this
> bug.
> 
> Btw, what's the ETA?
If I don't find any new bugs in my patch....: Today :). 

Alex






More information about the Pkg-nagios-devel mailing list