CVE-2013-3374
Publication date 23 August 2013
Last updated 24 July 2024
Ubuntu priority
Description
Unspecified vulnerability in Request Tracker (RT) 3.8.x before 3.8.17 and 4.0.x before 4.0.13, when using the Apache::Session::File session store, allows remote attackers to obtain sensitive information (user preferences and caches) via unknown vectors, related to a "limited session re-use."
Status
| Package | Ubuntu Release | Status | 
|---|---|---|
| request-tracker4 | ||
| 16.04 LTS xenial | 
                                Not affected 
                                
                               | |
| 14.04 LTS trusty | Not in release | |
| request-tracker3.8 | ||
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |