Update Info

openSUSE-2020-517


Security update for nagios


Type: security
Severity: moderate
Issued: 2020-04-14
Description:
This update for nagios to version 4.4.5 fixes the following issues:

- CVE-2019-3698: Symbolic link following vulnerability in the cronjob allows 
  local attackers to cause cause DoS or potentially escalate privileges. (boo#1156309)
- CVE-2018-18245: Fixed XSS vulnerability in Alert Summary report (boo#1119832)
- CVE-2018-13441, CVE-2018-13458, CVE-2018-13457: Fixed a few denial of service 
  vulnerabilities caused by null pointer dereference (boo#1101293, boo#1101289, boo#1101290).

This update was imported from the openSUSE:Leap:15.1:Update update project.

              

Packages


  • nagios-4.4.5-bp151.4.3.1