Vulnerability Bulletins

DSA-3405 smokeping - security update

   
Affected software Debian
 
Tero Marttila discovered that the Debian packaging for smokepinginstalled it in such a way that the CGI implementation of Apache httpd(mod_cgi) passed additional arguments to the smokeping_cgi program,potentially leading to arbitrary code execution in response to craftedHTTP requests.

More info:

https://www.debian.org/security/2015/dsa-3405