PT-2008-4896 · Best Practical Solutions+1 · Rt+1
Rune Hammersland
·
Published
2008-08-06
·
Updated
2017-08-08
·
CVE-2008-3502
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Best Practical Solutions RT versions 3.0.0 through 3.6.6
Description
The issue allows remote authenticated users to cause a denial of service, resulting in CPU or memory consumption, via unspecified vectors related to the Devel::StackTrace module for Perl.
Recommendations
For versions 3.0.0 through 3.6.6, consider disabling the Devel::StackTrace module as a temporary workaround until a patch is available. Restrict access to the affected module to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Devel::Stacktrace
Rt