Multiple vulnerabilities have been identified in Debian, which could be exploited by attackers or malicious users to manipulate or disclose certain information. These issues are caused by input validation errors in Request Tracker, which could allow information disclosure, directory traversal, cross site scripting, SQL injection, and cross site request forgery attacks.
Debian GNU/Linux lenny - Upgrade to request-tracker3.6 version 3.6.7-5+lenny6Debian GNU/Linux squeeze - Upgrade to request-tracker3.8 version 3.8.8-7+squeeze1Debian GNU/Linux wheezy - Upgrade to request-tracker3.8 version 3.8.10-1Debian GNU/Linux sid - Upgrade to request-tracker3.8 version 3.8.10-1