[rt-users] On the session fixation vulnerability - what do the logs look like?

Arrigo Triulzi arrigo at northsea.sevenseas.org
Wed Dec 2 11:39:00 EST 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi Jesse,

On Dec 2, 2009, at 16:45, Jesse Vincent wrote:
> It looks like a bug. But it doesn't look like you were attacked.

OK, I'll file it under "bizarre bug"... one day we'll find the courage  
to upgrade to 3.8...

Thanks for taking the time to clarify,

Arrigo

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (Darwin)

iEYEARECAAYFAksWmCUACgkQDbQ6TQLMoL9GSQCfU0LKTWoa7d+sBO4dzm+0YzJ9
HS4Anj0oDCmIcXnWWdnMI+WfO3lUCnWw
=LoVk
-----END PGP SIGNATURE-----



More information about the rt-users mailing list