Preisgabe von Informationen in Bugzilla
| ID: | FEDORA-2012-11364 |
| Distribution: | Fedora |
| Plattformen: | Fedora 17 |
| Datum: | Mo, 13. August 2012, 07:24 |
| Referenzen: | http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1969 |
Originalnachricht |
|
Name : bugzilla Product : Fedora 17 Version : 4.0.7 Release : 1.fc17 URL : http://www.bugzilla.org/ Summary : Bug tracking system Description : Bugzilla is a popular bug tracking system used by multiple open source projects It requires a database engine installed - either MySQL, PostgreSQL or Oracle. Without one of these database engines (local or remote), Bugzilla will not work - see the Release Notes for details. -------------------------------------------------------------------------------- Update Information: These versions of Bugzilla fix an information leak that allows an unprivileged user to read the description of a private attachment. See https://bugzilla.mozilla.org/show_bug.cgi?id=777586 for all the details. -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 30 2012 Emmanuel Seyman | |