Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Gentoo: 200402-04 Normal: Gallery Remote Exploit Security Advisory

gentoo
Calendar Grey February 11, 2004
Dist Gentoo Esm H88
Gentoo GLSA-200502-05 presents a standard severity alert concerning a remote vulnerability found in Gallery versions 1.4.2 to 1.5.0.

The Gallery developers have discovered a potentially serious security flaw in Gallery 1.3.1, 1.3.2, 1.3.3, 1.4 and 1.4.1 which can a remote exploit of your webserver

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200402-04
~                                            https://security.gentoo.org/

~ Severity: Normal ~ Title: Gallery <= 1.4.1 remote exploit vulnerability ~ Date: February 11, 2004 ~ Bugs: #39638 ~ ID: 200402-04

Synopsis ======= The Gallery developers have discovered a potentially serious security flaw in Gallery 1.3.1, 1.3.2, 1.3.3, 1.4 and 1.4.1 which can a remote exploit of your webserver.
Background ========= Gallery is an open source image management system written in PHP. More information is available at https://sourceforge.net/projects/gallery/
========== Starting in the 1.3.1 release, Gallery includes code to simulate the behaviour of the PHP 'register_globals' variable in environments where that setting is disabled. It is simulated by extracting the values of the various $HTTP_ global variables into the global namespa...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here