Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 436
Alerts This Week
Warning Icon 1 436

Debian: DSA 1405-1 High: WordPress Remote Code Execution

debian
Calendar Grey November 8, 2007
Scroller Debian
Debian Security Advisory DSA 1405-1 highlights a severe vulnerability in wordpres, necessitating immediate attention from users for timely updates.
Nicklous Roberts discovered that the Reupload module of Gallery 2, a web based photo management application, allowed unauthorized users to edit Gallery's data file.

Summary


For the stable distribution (etch) this problem has been fixed in
version 2.1.2-2.0.etch.1.

For the unstable distribution (sid) this problem has been fixed in
version 2.2.3-1.

We recommend that you upgrade your gallery2 package.


Upgrade Instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 4.0 alias etch

Size/MD5 checksum: 884 1292cd38f037d14233c50c82f2656559
Size/MD5 checksum: 17103 96a6d2095129554de20e23203ff07cfa
Size/MD5 checksum: 9506000 0603fedf38581e11c27a78d451f2730f

Architecture independent components:

Size/MD5...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.