MGASA-2016-0375

Source
https://advisories.mageia.org/MGASA-2016-0375.html
Import Source
https://advisories.mageia.org/MGASA-2016-0375.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2016-0375
Related
Published
2016-11-14T07:08:50Z
Modified
2016-11-13T19:01:06Z
Summary
Updated monit packages fix security vulnerability
Details

The forms in Monit's Service Manager are vulnerable to a cross site request forgery attack. Successful exploitation will enable an attacker to disable/enable all monitoring for a particular host, disable/enable monitoring for a specific service (CVE-2016-7067).

References
Credits

Affected packages

Mageia:5 / monit

Package

Name
monit
Purl
pkg:rpm/mageia/monit?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.20.0-1.mga5

Ecosystem specific

{
    "section": "core"
}