“aCiDBiTS has reported a vulnerability in Gallery,
potentially allowing malicious people to compromise a vulnerable
system. The problem is that “save_photos.php” stores
uploaded files in a temporary folder before processing them without
checking if they are valid images files. This allows malicious people
to upload and execute arbitrary code if the temporary folder is
accessible from remote. This has been reported to affect version
1.4.4. Prior versions may also be affected. NOTE: This only
affects…