CVE-2014-1878
Publication date 28 February 2014
Last updated 24 July 2024
Ubuntu priority
Stack-based buffer overflow in the cmd_submitf function in cgi/cmd.c in Nagios Core, possibly 4.0.3rc1 and earlier, and Icinga before 1.8.6, 1.9 before 1.9.5, and 1.10 before 1.10.3 allows remote attackers to cause a denial of service (segmentation fault) via a long message to cmd.cgi.
Status
Package | Ubuntu Release | Status |
---|---|---|
icinga | ||
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty | Not in release | |
nagios3 | ||
16.04 LTS xenial |
Fixed 3.5.1.dfsg-2.1ubuntu1.1
|
|
14.04 LTS trusty |
Fixed 3.5.1-1ubuntu1.1
|
|
Patch details
Package | Patch details |
---|---|
icinga |
References
Related Ubuntu Security Notices (USN)
- USN-3253-1
- Nagios vulnerabilities
- 3 April 2017