-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 10 Jun 2010 17:08:56 +0000 Source: cacti Binary: cacti Architecture: source all Version: 0.8.7b-2.1+lenny3 Distribution: stable-security Urgency: high Maintainer: Sean Finney <seanius@debian.org> Changed-By: Nico Golde <nion@debian.org> Description: cacti - Frontend to rrdtool for monitoring systems and services Closes: 582691 Changes: cacti (0.8.7b-2.1+lenny3) stable-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix unauthenticated sql injection vulnerability due to validating $_REQUEST rather than $_GET (CVE-2010-2092; Closes: #582691). Checksums-Sha1: 9add7e19557fdb900ebfb6daaa994763ee71114b 1117 cacti_0.8.7b-2.1+lenny3.dsc 9d13a7495ef7d9fc32f8a8b10e78b78183b28e80 37818 cacti_0.8.7b-2.1+lenny3.diff.gz 217770206c8719e936adfd1610dfb0e51b4bf84b 1855976 cacti_0.8.7b-2.1+lenny3_all.deb Checksums-Sha256: 3d8ae0e9ca2cf502356e00eab71d8e3e145f755c8ede66380b7fc364beaa0870 1117 cacti_0.8.7b-2.1+lenny3.dsc 6f93489b7e735db93a968c57e3aa96815c2834323d0ab1bdc8c331c1bdda0a07 37818 cacti_0.8.7b-2.1+lenny3.diff.gz 6fd583f1b841077f8f4c8a54ff7ae0882e256d646546b26e326ff39050b73e2d 1855976 cacti_0.8.7b-2.1+lenny3_all.deb Files: bd9650c8f8a8cd1ab9bcf9385516948f 1117 web extra cacti_0.8.7b-2.1+lenny3.dsc 5a336fe8cf710c833521544c121827d2 37818 web extra cacti_0.8.7b-2.1+lenny3.diff.gz a7f99b878d484cb6efaab85357b53b66 1855976 web extra cacti_0.8.7b-2.1+lenny3_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAkwRHGwACgkQHYflSXNkfP8RogCbBu52UNMDQvHNnGf09Qe536F9 5kUAn114v2IVWqfzVeu9Hz/SWMZ3T2V7 =eDM+ -----END PGP SIGNATURE----- Accepted: cacti_0.8.7b-2.1+lenny3.diff.gz to main/c/cacti/cacti_0.8.7b-2.1+lenny3.diff.gz cacti_0.8.7b-2.1+lenny3.dsc to main/c/cacti/cacti_0.8.7b-2.1+lenny3.dsc cacti_0.8.7b-2.1+lenny3_all.deb to main/c/cacti/cacti_0.8.7b-2.1+lenny3_all.deb