First published: Thu Apr 08 2010(Updated: )
MediaWiki upstream has released: [1] <a href="http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-April/000090.html">http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-April/000090.html</a> latest, v.1.15.3 version, addressing one cross-site request forgery (CSRF) issue (from [1]): "MediaWiki was found to be vulnerable to login CSRF. An attacker who controls a user account on the target wiki can force the victim to log in as the attacker, via a script on an external website. If the wiki is configured to allow user scripts, say with "$wgAllowUserJs = true" in LocalSettings.php, then the attacker can proceed to mount a phishing-style attack against the victim to obtain their password." Upstream bug report: [2] <a href="https://bugzilla.wikimedia.org/show_bug.cgi?id=23076">https://bugzilla.wikimedia.org/show_bug.cgi?id=23076</a> CVE Request (and reply): [3] <a href="http://www.openwall.com/lists/oss-security/2010/04/07/1">http://www.openwall.com/lists/oss-security/2010/04/07/1</a> [4] <a href="http://www.openwall.com/lists/oss-security/2010/04/08/4">http://www.openwall.com/lists/oss-security/2010/04/08/4</a>
Affected Software | Affected Version | How to fix |
---|---|---|
MediaWiki |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-580418 is categorized as a cross-site request forgery (CSRF) vulnerability that can lead to unauthorized actions on behalf of authenticated users.
To fix REDHAT-BUG-580418, you should upgrade to the latest version of MediaWiki, specifically version 1.15.3 or later.
REDHAT-BUG-580418 affects instances of Wikimedia MediaWiki running versions prior to 1.15.3.
REDHAT-BUG-580418 was disclosed in April 2010.
Exploiting REDHAT-BUG-580418 could allow an attacker to perform actions on behalf of legitimate users without their consent.