Пакет glpi: Информация

  • Default inline alert: Версия в репозитории: 10.0.15-alt1

Исходный пакет: glpi
Версия: 10.0.10-alt1
Собран:  7 декабря 2023 г. 10:30 в задании #335195
Категория: Сети/Прочее
Сообщить об ошибке в пакете
Домашняя страница: http://www.glpi-project.org

Лицензия: GPLv3
О пакете: IT and asset management software
Описание: 
GLPI is the Information Resource-Manager with an additional Administration-
Interface.
You can use it to build up a database with an inventory for your company
(computer, software, printers...).
It has enhanced functions to make the daily life for the administrators easier,
like a job-tracking-system with mail-notification and methods to build a
database with basic information about your network-topology.

Список rpm-пакетов, предоставляемых данным srpm-пакетом:
glpi (noarch)
glpi-apache2 (noarch)
glpi-php8.0 (noarch)
glpi-php8.1 (noarch)
glpi-php8.2 (noarch)

Сопровождающий: Pavel Zilke

Список участников:
Pavel Zilke

    1. rpm-macros-webserver-common

Последнее изменение


1 октября 2023 г. Pavel Zilke 10.0.10-alt1
- New version 10.0.10
- This release fixes a security issue that has been recently discovered. Update is recommended!
- Security fixes:
 + CVE-2023-42802 : Unallowed PHP script execution
 + CVE-2023-41320 : Account takeover via SQL Injection in UI layout preferences
 + CVE-2023-41326 : Account takeover via Kanban feature
 + CVE-2023-41324 : Account takeover through API
 + CVE-2023-42462 : File deletion through document upload process
 + CVE-2023-41321 : Sensitive fields enumeration through API
 + CVE-2023-41322 : Privilege Escalation from technician to super-admin
 + CVE-2023-41323 : Users login enumeration by unauthenticated user
 + CVE-2023-41888 : Phishing through a login page malicious URL
 + CVE-2023-42461 : SQL injection in ITIL actors
13 июля 2023 г. Pavel Zilke 10.0.9-alt1
- New version 10.0.9
- This release fixes several security issues that has been recently discovered. Update is recommended!
- Security fixes:
 + CVE-2023-37278 : SQL injection in dashboard administration
- Deleted glpi-php7
13 июля 2023 г. Pavel Zilke 10.0.8-alt1
- New version 10.0.8
- This release fixes several security issues that has been recently discovered. Update is recommended!
- Security fixes:
 + CVE-2023-35924 : SQL injection via inventory agent request
 + CVE-2023-36808 : SQL injection through Computer Virtual Machine information
 + CVE-2023-35939 : Unauthorized access to Dashboard data
 + CVE-2023-35940 : Unauthenticated access to Dashboard data
 + CVE-2023-34244 : Reflected XSS in search pages
 + CVE-2023-34107 : Unauthorized access to knowledge base items
 + CVE-2023-34106 : Unauthorized access to user data