openSUSE Security Update : cacti / cacti-spine (openSUSE-2018-321)

medium Nessus Plugin ID 108741

Language:

Synopsis

The remote openSUSE host is missing a security update.

Description

This update for cacti, cacti-spine fixes the following issues

Security issues fixed :

- bsc#1086792: Path-Based Cross-Site Scripting (XSS) issues

This update also contains a number of upstream bug fixes and improvements in the 1.1.37 version. The minimum required php version is 5.4, in openSUSE Leap 42.3 this is provided by php7.

Solution

Update the affected cacti / cacti-spine packages.

See Also

https://bugzilla.opensuse.org/show_bug.cgi?id=1086792

Plugin Details

Severity: Medium

ID: 108741

File Name: openSUSE-2018-321.nasl

Version: 1.3

Type: Local

Agent: unix

Published: 3/30/2018

Updated: 1/19/2021

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Continuous Assessment, Nessus

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:cacti-spine, p-cpe:/a:novell:opensuse:cacti-spine-debuginfo, cpe:/o:novell:opensuse:42.3, p-cpe:/a:novell:opensuse:cacti-spine-debugsource, p-cpe:/a:novell:opensuse:cacti

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 3/29/2018