Go Back   Mambo - A PHP & MySQL Content Management System > Mambo Announcements Forum > Announcements
User Name
Password


Reply
 
Thread Tools Search this Thread Display Modes
Old February 1st, 2005, 15:29   #1
MasterChief
Mambo Development Team
 
MasterChief's Avatar
 
Join Date: Oct 2003
Location: Toowoomba, Australia
Posts: 939
MasterChief is on a distinguished road
Send a message via ICQ to MasterChief
Exclamation Security Patch a Must Upgrade

Patches are available for Mambo Version 4.5.0-1.0.9 and Version 4.5.1a at MamboForge to counter a vulnerability within Mambo. All administrators of Mambo sites are encouraged to upgrade at their earlist convenience.

At this time we are not releasing details of how to leverage this vulnerability to protect existing sites.

The patch files contains a new version of /includes/mambo.php which has a countermeasure for this vulnerability. Simply upload the mambo.php in the zip to your server, replacing you existing /includes/mambo.php file on your site.

Note that for a 4.5.0 site, the file is /classes/mambo.php.

*Update*

It appears this issue is related to a vulnerability found in PHP last month.
__________________
Andrew Eddie
Mambo Open Source Project Director
<><

Last edited by MasterChief : February 1st, 2005 at 18:16.
MasterChief is offline   Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Standard patch format & patch manager component tohagan Wishlist & Feature requests 0 December 12th, 2004 08:51
Security patch for 4.5 1.0.9 imsleepy General Questions 29 September 30th, 2004 12:24
Security patch for 4.5 1.0.9 (24 Sept o4) stingrey Announcements 0 September 24th, 2004 08:22
Security patch for 4.5 1.0.9 (24 Sept o4) stingrey Security & Performance 0 September 24th, 2004 08:22
MamboV4.5 Safemode Patch Finally Here!! davemac2 Installation 104 August 27th, 2004 07:01


All times are GMT -7. The time now is 07:00.


Powered by: vBulletin Version 3.0.7
Copyright ©2000 - 2005, Jelsoft Enterprises Ltd.
Miro International Pty.