Bug#843091: otrs2: CVE-2016-9139

2016-11-09 Thread Salvatore Bonaccorso
Hi Patrick, On Thu, Nov 03, 2016 at 09:06:55PM +0100, Patrick Matth??i wrote: > Am 03.11.2016 um 19:48 schrieb Salvatore Bonaccorso: > > Source: otrs2 > > Version: 3.3.9-1 > > Severity: important > > Tags: security upstream fixed-upstream > > > > Hi, > > > > the following vulnerability was publish

Bug#843091: otrs2: CVE-2016-9139

2016-11-03 Thread Patrick Matthäi
Am 03.11.2016 um 19:48 schrieb Salvatore Bonaccorso: > Source: otrs2 > Version: 3.3.9-1 > Severity: important > Tags: security upstream fixed-upstream > > Hi, > > the following vulnerability was published for otrs2. > > CVE-2016-9139[0]: > |An attacker could trick an authenticated agent or customer

Bug#843091: otrs2: CVE-2016-9139

2016-11-03 Thread Salvatore Bonaccorso
Source: otrs2 Version: 3.3.9-1 Severity: important Tags: security upstream fixed-upstream Hi, the following vulnerability was published for otrs2. CVE-2016-9139[0]: |An attacker could trick an authenticated agent or customer into opening |a malicious attachment which could lead to the execution