Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Debian: DSA-2610-1 Moderate: Ganglia Remote Script Execution Risk

debian
Calendar Grey January 21, 2013
Debian Logo
Inadequate input validation in Ganglia highlights dangers of remote code execution. It is advisable to perform updates to reduce vulnerabilities.
Insufficient input sanitization in Ganglia, a web based monitoring system, could lead to remote PHP script execution with permissions of the user running the web browser

Summary

For the stable distribution (squeeze), this problem has been fixed in
version 3.1.7-1+squeeze1.

For the testing distribution (wheezy), this problem has been fixed in
version 3.3.8-1.

For the unstable distribution (sid), this problem has been fixed in
version 3.3.8-1.

We recommend that you upgrade your ganglia packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/



Package: ganglia
CVE ID: CVE-2012-3448

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here