[SAC] [abuse #31856] CISA Security issues with OSGEO hosts

Lance Albertson via RT abuse at osuosl.org
Tue Nov 9 16:50:09 PST 2021


On Thu Oct 28 20:13:49 2021, lr at pcorp.us wrote:
> [Regina Obe] 
> Okay it shows this for osgeo3 so looks patched
> 
> nginx-full/stable,now 1.18.0-6.1 all [installed]
> 
> 
> > > For the osgeo7 and osgeo4 -- they are both running Ubuntu 20.04.3 LTS
> > > Which came with nginx 1.18.0
> > 
> Output of 
> dpkg-query -s nginx | grep Version:
> 
> shows this on osgeo7 and osgeo4
> 
> Version: 1.18.0-0ubuntu1.2
> 
> So yes they look patched.  Thanks for the patch info.  I missed that subtlety
> in the CVE

The latest report seems to be false positives so I'm going to go ahead and just
close this ticket finally. Thanks for keeping everything patched! I'll let you
know if we see anything new.

-- 
Lance Albertson
Director
Oregon State University | Open Source Lab 


More information about the Sac mailing list