Candidate: CVE-2013-1883 PublicDate: 2014-05-27 14:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1883 http://www.openwall.com/lists/oss-security/2013/03/21/3 Description: Mantis Bug Tracker (aka MantisBT) 1.2.12 before 1.2.15 allows remote attackers to cause a denial of service (resource consumption) via a filter using a criteria, text search, and the "any condition" match type. Ubuntu-Description: Notes: jdstrand> per Debian, only affects 1.2.12 to 1.2.14 Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_mantis: upstream_mantis: released (1.2.15) hardy_mantis: not-affected lucid_mantis: not-affected oneiric_mantis: not-affected precise_mantis: not-affected quantal_mantis: not-affected devel_mantis: not-affected (1.2.11-1.2)