Re: Dag: cacti-0.8.6d needs a security update

Dries Verachtert <[email protected]>
Newsgroups gmane.linux.freshrpms.user,gmane.spam.detected
Message-ID <[email protected]>
On Saturday 09 July 2005 13:21, Sitsofe Wheeler wrote:
> Hello,
>
> I've posted this once but I'm resending again in case my original post was
> overlooked.
>
> cacti-0.8.6d-1.1.fc3.rf has multiple security issues (as does 0.8.6e)
> (http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-1524 ) within it
> that I am sad to say are being VERY actively exploited via Google searches
> in a similar way to the AWStats security holes of a few months ago
> (http://lists.freshrpms.net/pipermail/freshrpms-list/2005-February/012415.h
>tml ). There is a new version 0.8.6f of cacti (http://www.cacti.net/ ) that
> fixes these holes.
>
> Dag can you pull your 0.8.6d RPMs and replace them with 0.8.6f ones?

Hello,
You can find newer packages at 
http://dries.ulyssis.org/rpm/packages/cacti/info.html 

kind regards,
Dries

-- 
Rpm packages for Red Hat Enterprise Linux, Fedora Core and Aurora at 
http://dries.ulyssis.org/rpm/
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.