Sign Up
Log In
Log In
or
Sign Up
Places
All Projects
Status Monitor
Collapse sidebar
openSUSE:Backports:SLE-15-SP1:Update
patchinfo.12298
_patchinfo
Overview
Repositories
Revisions
Requests
Users
Attributes
Meta
File _patchinfo of Package patchinfo.12298
<patchinfo incident="12298"> <issue tracker="bnc" id="1028975">AUDIT-0: server:monitoring/nagios: /var/spool/nagios/nagios.cmd with wrong group</issue> <issue tracker="bnc" id="1156309">VUL-0: CVE-2019-3698: nagios: /etc/cron.weekly/nagios allows privilege escalation from nagios to root</issue> <issue tracker="bnc" id="1119832"></issue> <issue tracker="cve" id="2018-13441"/> <issue tracker="cve" id="2019-3698"/> <issue tracker="cve" id="2018-13458"/> <issue tracker="cve" id="2018-18245"/> <issue tracker="cve" id="2018-13457"/> <packager>lrupp</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for nagios</summary> <description>This update for nagios to version 4.4.5 fixes the following issues: - CVE-2019-3698: Symbolic link following vulnerability in the cronjob allows local attackers to cause cause DoS or potentially escalate privileges. (boo#1156309) - CVE-2018-18245: Fixed XSS vulnerability in Alert Summary report (boo#1119832) - CVE-2018-13441, CVE-2018-13458, CVE-2018-13457: Fixed a few denial of service vulnerabilities caused by null pointer dereference (boo#1101293, boo#1101289, boo#1101290). This update was imported from the openSUSE:Leap:15.1:Update update project.</description> </patchinfo>
Locations
Projects
Search
Status Monitor
Help
OpenBuildService.org
Documentation
API Documentation
Code of Conduct
Contact
Support
@OBShq
Terms
openSUSE Build Service is sponsored by
The Open Build Service is an
openSUSE project
.
Sign Up
Log In
Places
Places
All Projects
Status Monitor