Candidate: CVE-2009-3386 PublicDate: 2009-11-20 17:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3386 Description: Template.pm in Bugzilla 3.3.2 through 3.4.3 and 3.5 through 3.5.1 allows remote attackers to discover the alias of a private bug by reading the (1) Depends On or (2) Blocks field of a related bug. Ubuntu-Description: Notes: Bugs: https://bugzilla.mozilla.org/show_bug.cgi?id=529416 Priority: low Discovered-by: Assigned-to: CVSS: Patches_bugzilla: upstream_bugzilla: released (3.4.4) dapper_bugzilla: ignored (reached end-of-life) hardy_bugzilla: not-affected (pre-3.3.2) intrepid_bugzilla: needs-triage (reached end-of-life) jaunty_bugzilla: ignored (reached end-of-life) karmic_bugzilla: ignored (reached end-of-life) lucid_bugzilla: not-affected (pre-3.3.2) maverick_bugzilla: not-affected (3.4.7.0-1) natty_bugzilla: not-affected (3.4.7.0-1) devel_bugzilla: not-affected (3.4.7.0-1)