Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 21: FEDORA-2015-12972 Critical: Nagios Plugins Arbitrary File Read

fedora
Calendar Grey August 18, 2015
Dist Fedora Esm H88
Address multiple CVE vulnerabilities in nagios-plugins for Fedora 21 with this critical update advisory.
Update to 2.0.3 release to fix various CVE issues.

Summary

Nagios is a program that will monitor hosts and services on your

network, and to email or page you when a problem arises or is

resolved. Nagios runs on a Unix server as a background or daemon

process, intermittently running checks on various services that you

specify. The actual service checks are performed by separate "plugin"

programs which return the status of the checks to Nagios. This package

contains those plugins.

Update Information:

Update to 2.0.3 release to fix various CVE issues.

Change Log

* Tue Aug 4 2015 Josh Boyer - 2.0.3-1 - Update to 2.0.3 * Wed Jun 17 2015 Fedora Release Engineering - 2.0.1-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild * Sun Aug 17 2014 Fedora Release Engineering - 2.0.1-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild

References


[ 1 ] Bug #1114841 - CVE-2014-4702 nagios-plugins: check_icmp Arbitrary Option File Read https://bugzilla.redhat.com/show_bug.cgi?id=1114841 [ 2 ] Bug #1098531 - CVE-2014-4701 CVE-2014-4703 nagios-plugins: check_dhcp Arbitrary Option File Read https://bugzilla.redhat.com/show_bug.cgi?id=1098531

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update nagios-plugins' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: nagios-plugins
Product: Fedora 21
Version: 2.0.3
Release: 1.fc21
Summary: Host/service/network monitoring program plugins for Nagios

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here