Gallery Remote Server-Side Script Execution Vulnerability

Solution:
The vendor has released an updated fix (version 1.4.4-pl2) to address this issue.

Gentoo has released an advisory (GLSA 200409-05) and an updated eBuild to address this issue. Please see the referenced advisory for more information. Gentoo users can carry out the following commands to update their computer:

emerge sync
emerge -pv ">=www-apps/gallery-1.4.4_p2"
emerge ">=www-apps/gallery-1.4.4_p2"


Bharat Mediratta Gallery 1.4.4


 

Privacy Statement
Copyright 2010, SecurityFocus