Vulnerability CVE-2016-9566

This support forum board is for support questions relating to Nagios XI, our flagship commercial network monitoring solution.
Locked
glb
Posts: 5
Joined: Tue Feb 18, 2014 12:34 pm

Vulnerability CVE-2016-9566

Post by glb »

Hi,

I've seen that vulnerability CVE-2016-9566 has been patched on Nagios Core version 4.2.4. Has the fix been applied to Nagios XI even though, according to the Nagios XI 5 changes page, it's still using Nagios Core 4.1.1?

Regards,

Guillaume Lorrain-Bélanger
dwhitfield
Former Nagios Staff
Posts: 4583
Joined: Wed Sep 21, 2016 10:29 am
Location: NoLo, Minneapolis, MN
Contact:

Re: Vulnerability CVE-2016-9566

Post by dwhitfield »

No, but it will be in 5.4. You are definitely not the first person to ask about this. It is a very high priority for our development team. Unfortunately, I cannot give you an ETA at this time.
glb
Posts: 5
Joined: Tue Feb 18, 2014 12:34 pm

Re: Vulnerability CVE-2016-9566

Post by glb »

Ok, thanks!

Guillaume
dwhitfield
Former Nagios Staff
Posts: 4583
Joined: Wed Sep 21, 2016 10:29 am
Location: NoLo, Minneapolis, MN
Contact:

Re: Vulnerability CVE-2016-9566

Post by dwhitfield »

You're welcome. Ok for us to go ahead and lock this up?
glb
Posts: 5
Joined: Tue Feb 18, 2014 12:34 pm

Re: Vulnerability CVE-2016-9566

Post by glb »

Yes
Locked