Bug#851710: zoneminder: CVE-2016-10140

2017-08-06 Thread Salvatore Bonaccorso
Hi Chris,

On Sun, Aug 06, 2017 at 08:40:09PM -0400, Chris Lamb wrote:
> Version: 1.30.4+dfsg-1
> 
> Hi,
> 
> | Information disclosure and authentication bypass vulnerability exists
> | in the Apache HTTP Server configuration bundled with ZoneMinder
> | v1.30.0, which allows a remote unauthenticated attacker to browse all
> | directories in the web root, e.g., a remote unauthenticated attacker
> | can view all CCTV images on the server.
> 
> Fix included in 1.30.4+dfsg-1 via upstream.

Thanks for the update!

I think I did already update that entry, let me check.

Regards,
Salvatore



Processed: Re: Bug#851710: zoneminder: CVE-2016-10140

2017-01-17 Thread Debian Bug Tracking System
Processing control commands:

> severity -1 grave
Bug #851710 [src:zoneminder] zoneminder: CVE-2016-10140
Severity set to 'grave' from 'important'

-- 
851710: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=851710
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems