From Gallery Website as seems there is a security Update. Could we be affected as running Gallery v1.4-pl1?
Gallery 1.4-pl2 security release
Posted by: bharat on Saturday, October 11, 2003 - 10:45 PMWe've been alerted to a security vulnerability in Gallery 1.4 that can allow remote access to your system. It only affects a very small percentage of Unix installations (though it affects all Windows installations). Only the following versions of Gallery have the bug:
* 1.4
* 1.4-pl1
* 1.4.1 (unreleased; prior to build 145)
On Unix, this vulnerability only affects systems where Gallery is left in configuration mode (a relatively small percentage of Gallery users since Gallery is not operational in configuration mode). On Windows, this vulnerability affects anybody using versions of Gallery with the bug. The problem has been fixed in:
* 1.4-pl2 [download here]
* 1.4.1 (unreleased; build 145)