PublicDate: 2008-06-16 23:41:00 UTC Candidate: CVE-2008-2723 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2723 Description: embed.php in Menalto Gallery before 2.2.5 allows remote attackers to obtain the full path via unknown vectors related to "spoofing the remote address." Ubuntu-Description: Notes: jdstrand> per Debian, vulnerable code not present in gallery Bugs: https://bugs.launchpad.net/bugs/242671 Priority: low Discovered-by: Assigned-to: CVSS: Patches_gallery2: upstream_gallery2: released (2.2.5-1) dapper_gallery2: ignored (reached end-of-life) feisty_gallery2: needed (reached end-of-life) gutsy_gallery2: needed (reached end-of-life) hardy_gallery2: released (2.2.4-1ubuntu0.1) intrepid_gallery2: not-affected (2.2.5-1) jaunty_gallery2: not-affected (2.2.5-1) karmic_gallery2: not-affected (2.2.5-1) devel_gallery2: not-affected (2.2.5-1) Patches_gallery: upstream_gallery: not-affected dapper_gallery: not-affected feisty_gallery: not-affected gutsy_gallery: not-affected hardy_gallery: not-affected intrepid_gallery: not-affected jaunty_gallery: not-affected karmic_gallery: not-affected devel_gallery: not-affected