+++++++++ OTRS Security Advisory 2014-06 OTRS Help Desk 4 Patch Level 3, OTRS
Help Desk 3.3.11, 3.2.17 +++++++++
Releases: OTRS Help Desk 4 Patch Level 3, OTRS Help Desk 3.3.11,
3.2.17
Release date: 16-December-2014
Status: Patch Level Release
SECURITY FIXES:
==============
------------------------------------------------------------------
OTRS Security Advisory 2014-06 <security at otrs.org
<mailto:[email protected]>>
------------------------------------------------------------------
ID: OSA-2014-06
Date: 2014-12-16
Title: Incomplete Access Control
Severity: Low (Overall CVSS Score: 2.7)
Fixed in: OTRS Help Desk Patch Level 3, OTRS Help Desk 3.3.11, 3.2.17
URL:
https://www.otrs.com/security-advisory-2014-06-incomplete-access-control/
<https://www.otrs.com/security-advisory-2014-06-incomplete-access-control/>
References: CVE-2014-9324
To read the entire Security Advisory please follow this link.
https://www.otrs.com/security-advisory-2014-06-incomplete-access-control/
<https://www.otrs.com/security-advisory-2014-06-incomplete-access-control/>
There will also be Release Notes for the newest versions of OTRS Help Desk and
OTRS ITSM, where this vulnerability is fixed and we recommend an update to one
of these new versions.
Best regards
Annalena Navarro von Starck
Marketing Manager
OTRS AG
Norsk-Data-Straße 1
61352 Bad Homburg
Germany
T: +49 (0) 6172 681988 0
F: +49 (0) 9421 56818 18
I: http://www.otrs.com/ <http://www.otrs.com/>
Business location: Bad Homburg, Country Court: Bad Homburg, HRB 10751, VAT ID:
DE256610065
Chairman: Burchard Steinbild, Managing Board: André Mindermann (CEO),
Christopher Kuhn, Sabine Riedel
---------------------------------------------------------------------
OTRS mailing list: announce - Webpage: http://otrs.org/
Archive: http://lists.otrs.org/pipermail/announce
To unsubscribe: http://lists.otrs.org/cgi-bin/listinfo/announce