Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug
Bug#: 197356
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Gentoo Security <security@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: James Ward <james@jamesward.org>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
 
 
  ()

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 197356 depends on: Show dependency tree
Bug 197356 blocks: 197615

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2007-10-29 01:46 0000
Please version bump wordpress to 2.3.1.

Thanks.

Reproducible: Always

Steps to Reproduce:

------- Comment #1 From Robert Buchholz 2007-10-29 23:27:04 0000 -------
FrSIRT:
  A vulnerability has been identified in WordPress, which could be
  exploited by attackers to execute arbitrary scripting code. This
  issue is caused by an input validation error in the
  "wp-admin/edit-post-rows.php" script when processing the
  "posts_columns" parameter, which could be exploited by attackers to
  cause arbitrary scripting code to be executed by the user's browser
  in the security context of an affected Web site.


------- Comment #2 From Robert Buchholz 2007-10-29 23:28:21 0000 -------
Reintroducing security support for WordPress :-) According to upstream, it only
happens when register_globals is on, which is not a recommended setup anyway.

Web-Apps, your call.

------- Comment #3 From Robert Buchholz 2007-10-29 23:31:03 0000 -------
mah, reassigning changed status.

------- Comment #4 From Gunnar Wrobel 2007-10-30 12:18:58 0000 -------
Added to 2.3.1 to the tree. I also modified the ebuild a bit to a cleaner
webapp ebuild. I'll remove the older version if there are no bugs on the new
ebuild within a week.

------- Comment #5 From Sune Kloppenborg Jeppesen 2007-10-30 14:05:58 0000 -------
Closing this one as fixed since it's not stable. In the past I think we've
refused stuff that require register_globals to be on.

------- Comment #6 From James Ward 2007-10-31 07:04:14 0000 -------
The new ebuild overwrites my wp-config.php file.  Did I do something wrong?

------- Comment #7 From Gunnar Wrobel 2007-10-31 08:00:42 0000 -------
Hm, I checked but I think the definition of config file is okay. In my case
webapp-config protects the file correctly.

When you install wordpress into the virtual host, do you see the line:

...
^o^ hiding /wp-config.php
...

Do you see

...
 * (config) htdocs/wp-config.php
...

when installing the ebuild?

What is the content of 

/usr/share/webapps/wordpress/2.3.1/config-files

------- Comment #8 From Robert Buchholz 2007-10-31 10:52:49 0000 -------
I opened a new bug to handle this regression. Please reopen this if you want to
stable a new version.

Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug