diff --git a/.gitignore b/.gitignore index 2f0640e..05c9af7 100644 --- a/.gitignore +++ b/.gitignore @@ -44,3 +44,4 @@ /cacti-1.2.7.tar.gz /cacti-1.2.8.tar.gz /cacti-1.2.9.tar.gz +/cacti-1.2.10.tar.gz diff --git a/cacti-1.2.x-csrf-secret.patch b/cacti-1.2.x-csrf-secret.patch index 70dfc4a..a071c6b 100644 --- a/cacti-1.2.x-csrf-secret.patch +++ b/cacti-1.2.x-csrf-secret.patch @@ -4,7 +4,7 @@ * the CRSF secret file. */ --//$path_csrf_secret = '/etc/cacti/csrf-secret.php'; +-//$path_csrf_secret = '/usr/share/cacti/resource/csrf-secret.php'; +$path_csrf_secret = '/var/lib/cacti/csrf/csrf-secret.php'; /* diff --git a/cacti.spec b/cacti.spec index ac66abe..f62828d 100644 --- a/cacti.spec +++ b/cacti.spec @@ -1,7 +1,7 @@ %{!?_pkgdocdir: %global _pkgdocdir %{_docdir}/%{name}-%{version}} Name: cacti -Version: 1.2.9 +Version: 1.2.10 Release: 1%{?dist} Summary: An rrd based graphing tool License: GPLv2+ @@ -219,6 +219,10 @@ fi %ghost %{_datadir}/%{name}/resource.rpmmoved %changelog +* Mon Mar 02 2020 Morten Stevens - 1.2.10-1 +- Update to 1.2.10 +- CVE-2020-8813 + * Mon Feb 10 2020 Morten Stevens - 1.2.9-1 - Update to 1.2.9 - CVE-2020-7106, CVE-2020-7237 diff --git a/sources b/sources index bebb8f2..60bbfe7 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (cacti-1.2.9.tar.gz) = e50eb5587dc0274788b35cb701383ba897ab7c45a65efc7a8d32963b492c1ff1b96b0271ab7b6f9b53ad7dff5dd66b3ce4bd4a91c3ecf8ccd8d4b19b3ac972e4 +SHA512 (cacti-1.2.10.tar.gz) = 8ed9bd895dc5763fabc20e4fb3c78eb2f520b05fca03b6aac843860402cf15e754af1eb9d65412ed10db6e93531806d1ef48957a08f56f2f8b40f235b4413cf3