REDHAT-BUG-812045: XSS
It was reported [1] that some low-risk XSS flaws that are limited to the administration area were found in Gallery 3.x and 2.x. In addition, some unspecified possible encryption-related flaws were also reported. These issues have been corrected in Gallery 2.3.2 and 3.0.3.
[1] http://gallery.menalto.com/gallery303andgallery232
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-812045?
The severity of REDHAT-BUG-812045 is classified as low risk due to the XSS flaws being limited to the administration area.
How do I fix REDHAT-BUG-812045?
To fix REDHAT-BUG-812045, you should upgrade to Gallery version 2.3.2 or 3.0.3.
What types of vulnerabilities are reported in REDHAT-BUG-812045?
REDHAT-BUG-812045 reports low-risk XSS vulnerabilities and unspecified encryption-related flaws.
Which versions of Gallery are affected by REDHAT-BUG-812045?
Gallery versions 2.0 to 2.3.1 and 3.0 to 3.0.2 are affected by REDHAT-BUG-812045.
Is there a security patch for REDHAT-BUG-812045?
Yes, the vulnerabilities in REDHAT-BUG-812045 have been patched in Gallery versions 2.3.2 and 3.0.3.