Package: cacti
Version: 0.8.7b-2
Severity: serious
Tags: security patch

Hi,

An SQL injection issue was published in Cacti:
http://seclists.org/fulldisclosure/2010/Apr/272
Both stable and testing/unstable are affected.

Upstream blessed patch is here:
http://www.cacti.net/downloads/patches/0.8.7e/sql_injection_template_export.patch

CVE id not yet available.

Can you please apply it and upload to unstable with priority=high?


thanks,
Thijs

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply via email to