MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 uses the thumbnail ImageMagick command line argument, which allows remote attackers to obtain the installation path by reading the metadata of a PNG thumbnail file.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://phabricator.wikimedia.org/T108616 | vendor advisory |
http://www.securitytracker.com/id/1034028 | vdb entry |
https://lists.wikimedia.org/pipermail/mediawiki-announce/2015-October/000181.html | mailing list patch vendor advisory |