Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Gentoo: GLSA-200409-23 Low Severity: SnipSnap HTTP Response Split

gentoo
Calendar Grey September 17, 2004
Dist Gentoo Esm H88
Gentoo Linux Advisory GLSA 200409-24 reports minimal severity SnipSnap HTTP header injection vulnerability.
SnipSnap is vulnerable to HTTP response splitting attacks such as web cache poisoning, cross-user defacement, and cross-site scripting.

Summary

Gentoo Linux Security Advisory GLSA 200409-23 https://security.gentoo.org/ Severity: Low Title: SnipSnap: HTTP response splitting Date: September 17, 2004 Bugs: #64154 ID: 200409-23

Synopsis ======= SnipSnap is vulnerable to HTTP response splitting attacks such as web cache poisoning, cross-user defacement, and cross-site scripting.
Background ========= SnipSnap is a user friendly content management system with features such as wiki and weblog.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-java/snipsnap-bin < 1.0_beta1 >= 1.0_beta1
========== SnipSnap contains various HTTP response splitting vulnerabilities that could potentially compromise the sites dat...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
low
Lowest
Low
Medium
High
Critical


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3312121_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here