CVE-2013-0275

Publication date 14 March 2013

Last updated 24 July 2024


Ubuntu priority

Multiple cross-site scripting (XSS) vulnerabilities in Ganglia Web before 3.5.6 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Read the notes from the security team

Status

Package Ubuntu Release Status
ganglia-web 17.04 zesty
Not affected
16.10 yakkety Ignored end of life
16.04 LTS xenial
Not affected
14.04 LTS trusty Not in release
12.04 LTS precise Not in release

Notes


tsimonq2

From Debian: “starting with 3.6.0-1 the web front is no longer built from src:ganglia” - can confirm

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
ganglia-web