Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Gentoo: GLSA-200409-23 Low Severity: SnipSnap HTTP Response Split

gentoo
Calendar Grey September 17, 2004
Scroller Gentoo
Gentoo Linux Advisory GLSA 200409-24 reports minimal severity SnipSnap HTTP header injection vulnerability.
SnipSnap is vulnerable to HTTP response splitting attacks such as web cache poisoning, cross-user defacement, and cross-site scripting.

Summary

Gentoo Linux Security Advisory GLSA 200409-23 https://security.gentoo.org/ Severity: Low Title: SnipSnap: HTTP response splitting Date: September 17, 2004 Bugs: #64154 ID: 200409-23

Synopsis ======= SnipSnap is vulnerable to HTTP response splitting attacks such as web cache poisoning, cross-user defacement, and cross-site scripting.
Background ========= SnipSnap is a user friendly content management system with features such as wiki and weblog.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-java/snipsnap-bin < 1.0_beta1 >= 1.0_beta1
========== SnipSnap contains various HTTP response splitting vulnerabilities that could potentially compromise the sites dat...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
low
Lowest
Low
Medium
High
Critical

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround