[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-3502-1 roundup -- roundup

ID: oval:org.secpod.oval:def:602402Date: (C)2016-03-11   (M)2021-09-11
Class: PATCHFamily: unix




Ralf Schlatterbeck discovered an information leak in roundup, a web-based issue tracking system. An authenticated attacker could use it to see sensitive details about other users, including their hashed password. After applying the update, which will fix the shipped templates, the site administrator should ensure the instanced versions are also updated, either by patching them manually or by recreating them

Platform:
Debian 8.x
Debian 7.x
Product:
roundup
Reference:
DSA-3502-1
CVE-2014-6276
CVE    1
CVE-2014-6276
CPE    3
cpe:/a:roundup-tracker.org:roundup
cpe:/o:debian:debian_linux:7.x
cpe:/o:debian:debian_linux:8.x

© SecPod Technologies