XPost: linux.debian.security
From:
[email protected]
--20cf304275a867d09104fd11bbe6
Content-Type: text/plain; charset=ISO-8859-1
What am I supposed to Download this ONTO? PC I'm ON, is a PUBLIC Library
PC. & all of MY USB Flash-Drive are Wiped Clean. & "gobble-D-Gook" = incomprehensible Material.
On Sun, Jun 29, 2014 at 10:58 AM, Moritz Muehlenhoff <
[email protected]> wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
- ------------------------------------------------------------------------- Debian Security Advisory DSA-2970-1 [email protected] http://www.debian.org/security/ Moritz Muehlenhoff June 29, 2014 http://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : cacti
CVE ID : CVE-2014-2326 CVE-2014-2327 CVE-2014-2328 CVE-2014-2708
CVE-2014-2709 CVE-2014-4002
Multiple security issues (cross-site scripting, cross-site request
forgery, SQL injections, missing input sanitising) have been found in
Cacti, a web frontend for RRDTool.
For the stable distribution (wheezy), these problems have been fixed in version 0.8.8a+dfsg-5+deb7u3.
For the testing distribution (jessie), these problems have been fixed in version 0.8.8b+dfsg-6.
For the unstable distribution (sid), these problems have been fixed in version 0.8.8b+dfsg-6.
We recommend that you upgrade your cacti packages.
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/
Mailing list: [email protected]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
iQIcBAEBAgAGBQJTsFOEAAoJEBDCk7bDfE42Nz0QAJB/n4g/zhKu86yaLNqZQBhR tT1m51OJ9+2tUI96wnA4ZNUlFqCByCG/CjJGDUWoOGGjD6brZ3xufrLyD0SNickv 8XB+Wdbv/N6q0joKD96WtYYQcaLNUlhCGyzFmLLa2bo6n9v+85lNDJINCJt2Y3Wy B6pyVREhfLGyOdwdrMHn/25yZ7jSc+Cd/o03GyJamZMn6gjY3rh2sNAeCbUIq5Oi GFZ9LJvmcHKeSJOm0FFQSFmTrIbLMUb/1/TK2LLAGiHN4fpjkMZsN+vyTgCwgG8y 7sjhz3QizQ6C/PKGpdmhgmbTgJbGdxO6pyzDGpNxVx+q6eGWP6D5NsbIuNQB9Q/4 hG+95CJI8orxdyGtu3UVuW3ZjJOi5h2a2oOT1J+dEHhpmrhNXq9aZ+NtCw8RUzuF pSH4zNwk078PnYn1vKUBrIZhsrRHB1n4I6FjAm1JpFFWfPzJnPQrE3jxRjNALUqj PSyJ3VA54FcHfu/BRj9dqBMFb8zIgOUaO7OOEJ2nsV451IfMHkFtP9uMHSznogaG VP6rC8ue/aAyhSEXaBCj+bOLp6UVc9JNXoVL992tKk7EPQsd3Bim7IZnwyhJukAa qSlAqstZbAlA+khpcYA6Uq1pFkxlj7rnLIGiskHwMALRGBNmSYUXych9q1qjqxyO kfWXzI3r7DFK5U+DqeKs
=NbC+
-----END PGP SIGNATURE-----
--
To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact
[email protected]
Archive:
https://lists.debian.org/[email protected]
--20cf304275a867d09104fd11bbe6
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable
<div dir="ltr"><div class="gmail_default" style="font-family:comic sans ms,sans-serif">What am I supposed to Download this ONTO?�� PC I'm ON, is a PUBLIC Library PC. & all of MY�USB Flash-Drive are Wiped Clean. & "gobble-D-Gook" =
incomprehensible Material. </div>
</div><div class="gmail_extra"><br><br><div class="gmail_quote">On Sun, Jun 29, 2014 at 10:58 AM, Moritz Muehlenhoff <span dir="ltr"><<a href="mailto:
[email protected]" target="_blank">
[email protected]</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">-----BEGIN PGP SIGNED MESSAGE-----<br>
Hash: SHA1<br>
- -------------------------------------------------------------------------<br> Debian Security Advisory DSA-2970-1 � � � � � � � � � <a href="mailto:
[email protected]">
[email protected]</a><br>
<a href="
http://www.debian.org/security/" target="_blank">
http://www.debian.org/security/</a> � � � � � � � � � � � �Moritz Muehlenhoff<br>
June 29, 2014 � � � � � � � � � � � � �<a href="
http://www.debian.org/security/faq" target="_blank">
http://www.debian.org/security/faq</a><br>
- -------------------------------------------------------------------------<br>
Package � � � �: cacti<br>
CVE ID � � � � : CVE-2014-2326 CVE-2014-2327 CVE-2014-2328 CVE-2014-2708<br>
� � � � � � � � �CVE-2014-2709 CVE-2014-4002<br>
Multiple security issues (cross-site scripting, cross-site request<br>
forgery, SQL injections, missing input sanitising) have been found in<br> Cacti, a web frontend for RRDTool.<br>
For the stable distribution (wheezy), these problems have been fixed in<br> version 0.8.8a+dfsg-5+deb7u3.<br>
For the testing distribution (jessie), these problems have been fixed in<br> version 0.8.8b+dfsg-6.<br>
For the unstable distribution (sid), these problems have been fixed in<br> version 0.8.8b+dfsg-6.<br>
We recommend that you upgrade your cacti packages.<br>
Further information about Debian Security Advisories, how to apply<br>
these updates to your system and frequently asked questions can be<br>
found at: <a href="
http://www.debian.org/security/" target="_blank">
http://www.debian.org/security/</a><br>
[continued in next message]
--- SoupGate-Win32 v1.05
* Origin: you cannot sedate... all the things you hate (1:229/2)