Oval Definition:
oval:org.mitre.oval:def:13626
Revision Date
:
2014-06-30
Version
:
20
Title
:
USN-795-1 -- nagios2, nagios3 vulnerability
Description
:
It was discovered that Nagios did not properly parse certain commands submitted using the WAP web interface. An authenticated user could exploit this flaw and execute arbitrary programs on the server.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2009-2288
USN-795-1
USN-795-1
Platform(s)
:
Ubuntu 8.04
Ubuntu 8.10
Ubuntu 9.04
Product(s)
:
nagios2
nagios3
Definition Synopsis
Release section
Ubuntu 8.10 is installed
AND
Architecture section
Architecture independent section
Installed architecture is all
AND
Packages section
nagios3-doc DPKG is earlier than 3.0.2-1ubuntu1.2
OR
nagios3-common DPKG is earlier than 3.0.2-1ubuntu1.2
OR
Architecture depended section
Supported architectures section
Installed architecture is amd64
OR
Installed architecture is i386
OR
Installed architecture is powerpc
OR
Installed architecture is sparc
OR
Installed architecture is lpia
AND
Packages section
nagios3-dbg DPKG is earlier than 3.0.2-1ubuntu1.2
OR
nagios3 DPKG is earlier than 3.0.2-1ubuntu1.2
OR
Release section
Ubuntu 8.04 is installed
AND
Architecture section
Architecture independent section
Installed architecture is all
AND
Packages section
nagios2-doc DPKG is earlier than 2.11-1ubuntu1.5
OR
nagios2-common DPKG is earlier than 2.11-1ubuntu1.5
OR
Architecture depended section
Supported architectures section
Installed architecture is amd64
OR
Installed architecture is i386
OR
Installed architecture is powerpc
OR
Installed architecture is sparc
OR
Installed architecture is lpia
AND
Packages section
nagios2-dbg DPKG is earlier than 2.11-1ubuntu1.5
OR
nagios2 DPKG is earlier than 2.11-1ubuntu1.5
OR
Release section
Ubuntu 9.04 is installed
AND
Architecture section
Architecture independent section
Installed architecture is all
AND
Packages section
nagios3-doc DPKG is earlier than 3.0.6-2ubuntu1.1
OR
nagios3-common DPKG is earlier than 3.0.6-2ubuntu1.1
OR
Architecture depended section
Supported architectures section
Installed architecture is amd64
OR
Installed architecture is i386
OR
Installed architecture is powerpc
OR
Installed architecture is sparc
OR
Installed architecture is lpia
AND
Packages section
nagios3-dbg DPKG is earlier than 3.0.6-2ubuntu1.1
OR
nagios3 DPKG is earlier than 3.0.6-2ubuntu1.1
BACK