[Secure-testing-team] Bug#700158: ganglia: CVE-2013-0275: several XSS flaws

Salvatore Bonaccorso carnil at debian.org
Sat Feb 9 08:06:26 UTC 2013


Source: ganglia
Version: 3.3.8-1
Severity: important
Tags: security

Hi

ganglia's Webfrontend part contains several XSS flaws[0] fixed by [1].

 [0] http://security-tracker.debian.org/tracker/CVE-2013-0275
     http://marc.info/?l=oss-security&m=136034779111740&w=2
 [1] https://github.com/ganglia/ganglia-web/commit/31d348947419058c43b8dfcd062e2988abd5058e

3.3.8-1 in testing and unstable seems affected. Could you also check
stable and in case adjust the affected version in the BTS?

Please include the CVE in the changelog when fixing the issue.

Regards,
Salvatore



More information about the Secure-testing-team mailing list