Gentoo Security Advisory GLSA 200408-21 (cacti)

Summary
The remote host is missing updates announced in advisory GLSA 200408-21.
Solution
All users should upgrade to the latest available version of Cacti, as follows: # emerge sync # emerge -pv '>=net-analyzer/cacti-0.8.5a-r1' # emerge '>=net-analyzer/cacti-0.8.5a-r1' http://www.securityspace.com/smysecure/catid.html?in=GLSA%20200408-21 http://bugs.gentoo.org/show_bug.cgi?id=60630 http://archives.neohapsis.com/archives/fulldisclosure/2004-08/0717.html
Insight
With special configurations of Cacti it is possible to change passwords via a SQL injection attack.