First published: Thu Apr 12 2012(Updated: )
It was reported [1] that some low-risk XSS flaws that are limited to the administration area were found in Gallery 3.x and 2.x. In addition, some unspecified possible encryption-related flaws were also reported. These issues have been corrected in Gallery 2.3.2 and 3.0.3. [1] <a href="http://gallery.menalto.com/gallery_3_0_3_and_gallery_2_3_2">http://gallery.menalto.com/gallery_3_0_3_and_gallery_2_3_2</a>
Affected Software | Affected Version | How to fix |
---|---|---|
NotFound Gallery | >2.0<=2.3.1>3.0<=3.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-812045 is classified as low risk due to the XSS flaws being limited to the administration area.
To fix REDHAT-BUG-812045, you should upgrade to Gallery version 2.3.2 or 3.0.3.
REDHAT-BUG-812045 reports low-risk XSS vulnerabilities and unspecified encryption-related flaws.
Gallery versions 2.0 to 2.3.1 and 3.0 to 3.0.2 are affected by REDHAT-BUG-812045.
Yes, the vulnerabilities in REDHAT-BUG-812045 have been patched in Gallery versions 2.3.2 and 3.0.3.