FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

redmine -- multiple vulnerabilities

Affected packages
redmine < 2.6.8
3.0.0 <= redmine < 3.0.6
3.1.0 <= redmine < 3.1.2

Details

VuXML ID be63533c-9ed7-11e5-8f5c-002590263bf5
Discovery 2015-11-14
Entry 2015-12-10

Redmine reports:

Potential changeset message disclosure in issues API.

Data disclosure on the time logging form

References

CVE Name CVE-2015-8346
CVE Name CVE-2015-8473
URL http://www.openwall.com/lists/oss-security/2015/11/25/12
URL http://www.openwall.com/lists/oss-security/2015/12/03/7
URL http://www.redmine.org/projects/redmine/wiki/Security_Advisories