[SECURITY] Fedora EPEL 6 Update: gallery3-3.0.7-1.el6

updates at fedoraproject.org updates at fedoraproject.org
Tue May 28 19:38:40 UTC 2013


--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2013-5789
2013-05-13 16:51:55
--------------------------------------------------------------------------------

Name        : gallery3
Product     : Fedora EPEL 6
Version     : 3.0.7
Release     : 1.el6
URL         : http://gallery.menalto.com
Summary     : Customizable photo gallery web site
Description :
Gallery is an open source project with the goal to develop and support
leading photo sharing web application solutions.

--------------------------------------------------------------------------------
Update Information:

Two XSS vulnerabilities have been fixed in gallery 3.0.7.

http://osvdb.org/92691
http://osvdb.org/92740
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #962440 - CVE-2013-2087 gallery3: Two XSS flaws fixed in upstream 3.0.7 version [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=962440
  [ 2 ] Bug #962441 - CVE-2013-2087 gallery3: Two XSS flaws fixed in upstream 3.0.7 version [epel-6]
        https://bugzilla.redhat.com/show_bug.cgi?id=962441
--------------------------------------------------------------------------------

This update can be installed with the "yum" update programs.  Use
su -c 'yum update gallery3' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora EPEL GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the epel-package-announce mailing list