*** This bug is a security vulnerability ***

You have been subscribed to a public security bug by Marc Deslauriers 
(mdeslaur):

Binary package hint: nagios3

File from nagios3-cgi: /usr/share/nagios3/htdocs/main.html
containts an insecure img src from
http://sflogo.sourceforge.net/sflogo.php?group_id=26589&type=2

NOTE: Everything else on that main.html page is local relative URL thus
agnostic to http or https.

Thus when accessing nagios under https, the site is compromised since most 
browser don't like the one insecure image src.
Please remove the link or pull it into the nagios package as a local resource 
and change the img src to also be relative.

** Affects: nagios3 (Ubuntu)
     Importance: Undecided
         Status: New

-- 
insecure img src in main.html
https://bugs.launchpad.net/bugs/725220
You received this bug notification because you are a member of Ubuntu Bugs, 
which is a direct subscriber.

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to