Package: request-tracker3.6 Tag: security Severity: critical
http://blog.bestpractical.com/2009/11/session-fixation-vulnerability.html RT 3.8.6 is not affected. Regards Racke -- LinuXia Systems => http://www.linuxia.de/ Expert Interchange Consulting and System Administration ICDEVGROUP => http://www.icdevgroup.org/ Interchange Development Team -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org