Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 21 RT Advisory 2015-4666 Critical: DoS and Data Leak

fedora
Calendar Grey April 4, 2015
Dist Fedora Esm H88
Fedora 21 security patches tackle significant vulnerabilities in the rt application, reinforcing system reliability and safeguarding user information.
Security fix for CVE-2014-9472 Security fix for CVE-2015-1165 Security fix for CVE-2015-1464

Summary

RT is an enterprise-grade ticketing system which enables a group of people

to intelligently and efficiently manage tasks, issues, and requests submitted

by a community of users.

Update Information:

Security fix for CVE-2014-9472 Security fix for CVE-2015-1165 Security fix for CVE-2015-1464

Change Log

References


[ 1 ] Bug #1200059 - CVE-2014-9472 rt: denial of service flaw in email gateway https://bugzilla.redhat.com/show_bug.cgi?id=1200059 [ 2 ] Bug #1200065 - CVE-2015-1165 rt: information disclosure flaw in RSS feed handler https://bugzilla.redhat.com/show_bug.cgi?id=1200065 [ 3 ] Bug #1200069 - CVE-2015-1464 rt: session hijaking flaw in RSS feed handler https://bugzilla.redhat.com/show_bug.cgi?id=1200069

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update rt' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: rt
Product: Fedora 21
Version: 4.2.10
Release: 2.fc21
Summary: Request tracker

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here