ALAS-2022-1634

Related Vulnerabilities: CVE-2022-0730  

Under certain ldap conditions, Cacti authentication can be bypassed with certain credential types. (CVE-2022-0730)

ALAS-2022-1634


Amazon Linux AMI Security Advisory: ALAS-2022-1634
Advisory Release Date: 2022-09-15 03:57 Pacific
Advisory Updated Date: 2022-09-20 23:20 Pacific
Severity: Critical
References: CVE-2022-0730 

Issue Overview:

Under certain ldap conditions, Cacti authentication can be bypassed with certain credential types. (CVE-2022-0730)


Affected Packages:

cacti


Issue Correction:
Run yum update cacti to update your system.

New Packages:
noarch:
    cacti-1.1.19-2.19.amzn1.noarch

src:
    cacti-1.1.19-2.19.amzn1.src