|
Family: Debian Local Security Checks --> Category: infos
[DSA355] DSA-355-1 gallery Vulnerability Scan
Vulnerability Scan Summary DSA-355-1 gallery
Detailed Explanation for this Vulnerability Test
Larry Nguyen discovered a cross site scripting vulnerability in gallery,
a web-based photo album written in php. This security flaw can allow a
malicious user to craft a URL that executes Javascript code on your
website.
For the current stable distribution (woody) this problem has been fixed
in version 1.25-8woody1.
For the unstable distribution (sid) this problem has been fixed in
version 1.3.4-3.
We recommend that you update your gallery package.
Solution : http://www.debian.org/security/2003/dsa-355
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|