Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug
Bug#: 192240
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Gentoo Security <security@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Robert Buchholz <rbu@gentoo.org>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
 
 
  ()

Filename Description Type Creator Created Size Actions
20_security.dpatch 20_security.dpatch patch Robert Buchholz 2007-09-11 21:46 0000 2.67 KB Details | Diff
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 192240 depends on: Show dependency tree
Bug 192240 blocks:

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2007-09-11 21:43 0000
jffnms-0.8.3-r1 is vulnerable to the following issues:

CVE-2007-3189
Cross-site scripting (XSS) vulnerability in auth.php in Just For Fun Network
Management System (JFFNMS) 0.8.3 allows remote attackers to inject arbitrary
web script or HTML via the user parameter.

CVE-2007-3190
Multiple SQL injection vulnerabilities in auth.php in Just For Fun Network
Management System (JFFNMS) 0.8.3, when magic_quotes_gpc is disabled, allow
remote attackers to execute arbitrary SQL commands via the (1) user and (2)
pass parameters.

CVE-2007-3191
Just For Fun Network Management System (JFFNMS) 0.8.3 allows remote attackers
to obtain configuration information via a direct request to admin/adm/test.php,
which calls the phpinfo function.

CVE-2007-3192
admin/setup.php in Just For Fun Network Management System (JFFNMS) 0.8.3 allows
remote attackers to read and modify configuration settings via a direct
request.

0.8.4-pre3 fixed those issues. Patches against 0.8.3 are available attached.

------- Comment #1 From Robert Buchholz 2007-09-11 21:46:14 0000 -------
Created an attachment (id=130644) [details]
20_security.dpatch

Patches as shipped by Debian.

------- Comment #2 From Peter Volkov 2007-09-13 17:02:28 0000 -------
Thank you, Robert, for report. jffnms-0.8.3-r2 is in the tree.
This package was never stable and vulnerable versions are removed from the
tree, so I think this bug is done.

------- Comment #3 From Christian Faulhammer 2007-09-13 18:05:18 0000 -------
Closing, there never was a stable version.  Setting status to noglsa.

Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug