CVE-2008-1360 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1360): Cross-site scripting (XSS) vulnerability in Nagios before 2.11 allows remote attackers to inject arbitrary web script or HTML via unknown vectors to unspecified CGI scripts, a different issue than CVE-2007-5624.
Good to go stable?
yes, please.
Arches, please test and mark stable: =net-analyzer/nagios-core-2.11 Target keywords : "amd64 ppc64 release sparc x86"
ppc64 stable
should =net-analyzer/nagios-2.11 also go stable as it depends on ~net-analyzer/nagios-core${PV}?
(In reply to comment #5) > should =net-analyzer/nagios-2.11 also go stable as it depends on > ~net-analyzer/nagios-core${PV}? > uhrm, yeah ...
amd64/x86 stable. readding ppc64: see comment #6
ppc64 stablized =nagios-2.11 now too
sparc stable
this one is ready for glsa-vote
Fixed in release snapshot.
XSS -> voting NO.
NO, closing.