Bug#559020: Session Fixation Vulnerability

2009-12-01 Thread Stefan Hornburg (Racke)
Package: request-tracker3.6 Tag: security Severity: critical http://blog.bestpractical.com/2009/11/session-fixation-vulnerability.html RT 3.8.6 is not affected. Regards Racke -- LinuXia Systems = http://www.linuxia.de/ Expert Interchange Consulting and System Administration ICDEVGROUP

Bug#559020: [request-tracker-maintainers] Bug#559020: Session Fixation Vulnerability

2009-12-01 Thread Dominic Hargreaves
fixed 559020 3.6.9-2 thanks On Tue, Dec 01, 2009 at 09:44:33AM +0100, Stefan Hornburg (Racke) wrote: Package: request-tracker3.6 Tag: security Severity: critical http://blog.bestpractical.com/2009/11/session-fixation-vulnerability.html RT 3.8.6 is not affected. Already fixed in unstable,