Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Gentoo: 200402-04 Normal: Gallery Remote Exploit Security Advisory

gentoo
Calendar Grey February 11, 2004
Dist Gentoo Esm H88
Gentoo GLSA-200502-05 presents a standard severity alert concerning a remote vulnerability found in Gallery versions 1.4.2 to 1.5.0.

The Gallery developers have discovered a potentially serious security flaw in Gallery 1.3.1, 1.3.2, 1.3.3, 1.4 and 1.4.1 which can a remote exploit of your webserver

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200402-04
~                                            https://security.gentoo.org/

~ Severity: Normal ~ Title: Gallery <= 1.4.1 remote exploit vulnerability ~ Date: February 11, 2004 ~ Bugs: #39638 ~ ID: 200402-04

Synopsis ======= The Gallery developers have discovered a potentially serious security flaw in Gallery 1.3.1, 1.3.2, 1.3.3, 1.4 and 1.4.1 which can a remote exploit of your webserver.
Background ========= Gallery is an open source image management system written in PHP. More information is available at https://sourceforge.net/projects/gallery/
========== Starting in the 1.3.1 release, Gallery includes code to simulate the behaviour of the PHP 'register_globals' variable in environments where that setting is disabled. It is simulated by extracting the values of the various $HTTP_ global variables into the global namespa...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here