[Bug 481165] New: Update rt3 to 3.6.7

bugzilla at redhat.com bugzilla at redhat.com
Thu Jan 22 15:13:54 UTC 2009


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.

Summary: Update rt3 to 3.6.7

https://bugzilla.redhat.com/show_bug.cgi?id=481165

           Summary: Update rt3 to 3.6.7
           Product: Fedora EPEL
           Version: el5
          Platform: All
        OS/Version: Linux
            Status: NEW
          Severity: high
          Priority: high
         Component: rt3
        AssignedTo: xavier at bachelot.org
        ReportedBy: xavier at bachelot.org
         QAContact: extras-qa at fedoraproject.org
                CC: xavier at bachelot.org,
                    fedora-perl-devel-list at redhat.com, mmahut at redhat.com
        Depends on: 481163
    Classification: Fedora


rt3 <= 3.6.6 is vulnerable to a DoS attack thru the perl-Devel-StackTrace <
1.19 vector. This and rt 3.6.7 is needed to fully fix the security issue. 

See 
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3502 and
http://lists.bestpractical.com/pipermail/rt-announce/2008-June/000158.html for
details.

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.




More information about the Fedora-perl-devel-list mailing list