A number of XSS flaws were reported in the Ganglia web frontend. These flaws are not currently public.
Looks like the fixes for these are here: https://github.com/ganglia/ganglia-web/commit/31d348947419058c43b8dfcd062e2988abd5058e
Created ganglia tracking bugs for this issue Affects: fedora-all [bug 892301] Affects: epel-all [bug 909427]
CVE request: http://www.openwall.com/lists/oss-security/2013/02/08/5
The CVE identifier of CVE-2013-0275 has been assigned to this issue: http://www.openwall.com/lists/oss-security/2013/02/08/6
There are other unfixed XSS issues as noted here: http://www.openwall.com/lists/oss-security/2013/02/26/11 They received the name CVE-2013-1770
CVE-2013-1770 (the other unfixed XSS issues) have been noted as being fixed via this commit: https://github.com/ganglia/ganglia-web/commit/552965f33bf79d41ccbec3f1f26840c8bab54ad6