[Bug 625332] New: VUL-0: [Contrib] cacti security issue
http://bugzilla.novell.com/show_bug.cgi?id=625332 http://bugzilla.novell.com/show_bug.cgi?id=625332#c0 Summary: VUL-0: [Contrib] cacti security issue Classification: openSUSE Product: openSUSE 11.3 Version: Final Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: Other AssignedTo: joop.boonen@home.nl ReportedBy: meissner@novell.com QAContact: qa@suse.de Found By: Security Response Team Blocker: --- Name: CVE-2010-2092 Status: Candidate URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2092 Phase: Assigned (20100527) Category: Reference: MISC:http://php-security.org/2010/05/13/mops-2010-023-cacti-graph-viewer-sql-inje... Reference: CONFIRM:http://www.cacti.net/changelog.php Reference: DEBIAN:DSA-2060 Reference: URL:http://www.debian.org/security/2010/dsa-2060 SQL injection vulnerability in graph.php in Cacti 0.8.7e and earlier allows remote attackers to execute arbitrary SQL commands via the rra_id parameter in a GET request in conjunction with a valid rra_id value in a POST request or a cookie, which bypasses the validation routine. -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=625332 http://bugzilla.novell.com/show_bug.cgi?id=625332#c1 --- Comment #1 from Thomas Biege <thomas@novell.com> 2010-07-27 08:19:45 UTC --- Re: [oss-security] Cacti XSS fixes in 0.8.7g Von: Josh Bressers <bressers@redhat.com> An: oss-security@lists.openwall.com Kopie: coley <coley@mitre.org> Datum: 26.07.2010 21:20 Spam-Status: Spamassassin Mit 0 %iger Wahrscheinlichkeit Spam. Ausführlicher Bericht: Wahrscheinlichkeit=No, score=-3.999 tagged_above=-20 required=5 tests=[BAYES_50=0.001, RCVD_IN_DNSWL_MED=-4] Sorry for the delay. IDs inline. ----- "Tomas Hoger" <thoger@redhat.com> wrote:
Hi!
Cacti 0.8.7g was released some days ago: http://cacti.net/release_notes_0_8_7g.php
Release notes mention couple of security issue previously fixed in (withdrawn) 0.8.7f, but adds new protections against couple of XSS issues.
"XSS 4" from CVE-2009-4032 was not fixed previously: https://bugzilla.redhat.com/show_bug.cgi?id=541279#c17
Fixed in include/top_graph_header.php change in: http://svn.cacti.net/viewvc?view=rev&revision=6025
Use CVE-2010-2543
Search pattern in log file viewer was not filtered for bad characters, or escaped before echoing pattern back to page: https://bugzilla.redhat.com/show_bug.cgi?id=459105
Possible victims are administrative users with access to log viewer page. Fixed in r6025, which adds escaping to other search patterns too, but others were filtered previously.
Use CVE-2010-2544
Multiple persistent XSS via various item names or descriptions. Attacker needs to have certain administrative privileges, so this is fairly lame issue. https://bugzilla.redhat.com/show_bug.cgi?id=459229
Originally discovered for template names, where template XML import provides additional vector (trusted admin tricked to import untrusted template vs. untrusted admin). HTML escaping added on various places in r6037, r6038, r6041 and r6042.
Use CVE-2010-2545 Thanks. -- JB -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=625332 http://bugzilla.novell.com/show_bug.cgi?id=625332#c2 Marcus Meissner <meissner@novell.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Summary|VUL-0: [Contrib] cacti |[Contrib] cacti security |security issue |issue --- Comment #2 from Marcus Meissner <meissner@novell.com> 2010-08-04 11:49:09 UTC --- remove vul-0 tag, as its not directly in our coordination area -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=625332 https://bugzilla.novell.com/show_bug.cgi?id=625332#c3 Marcus Meissner <meissner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |RESOLVED Resolution| |NORESPONSE --- Comment #3 from Marcus Meissner <meissner@suse.com> 2013-04-05 08:11:31 UTC --- lets close, outdated -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com