Izašao kritični update Community Builder-a 1.2.1

Moderators: cicans, TheHacker

Locked
User avatar
ajfile
Joomla! Guru
Joomla! Guru
Posts: 595
Joined: Tue Sep 18, 2007 2:59 pm
Location: Beograd
Contact:

Izašao kritični update Community Builder-a 1.2.1

Post by ajfile » Thu Jun 18, 2009 9:38 pm

Izašao je novi CB i ako nije marketing :) trebalo bi ga ažurirati jer je otkrivena neka gadna rupa u ranijim verzijama, koja kako kažu još nije procurela u javnost. Evo dole njihovog teksta iz maila koji su poslali ..

Pre toga link za download nove verzije:
https://www.joomlapolis.com/index2.php? ... &no_html=1

***************************
Greetings to all!
You are receiving this email as you have subscribed to receive security announcements.
This is an important and urgent security advisory from CB Team: Upgrade all your Community Builder 1.0 and 1.1 installations to CB 1.2.1 as soon as possible.
We have received yesterday a private report from a Joomlapolitan about a critical vulnerability of CB 1.1, that we could now reproduce and confirm.
Community Builder 1.2 and 1.2.1 (as well as all CB 1.2 RC releases) are safe to our knowledge and NOT affected, as the corresponding CB 1.0/1.1 code has been entirely rewritten for CB 1.2.
CB 1.1 vulnerability is critical, highest level.
Our researches indicate that no exploit for this vulnerability is public, and that this vulnerability is not yet published on the Internet, but we might be wrong or it can happen anytime. So please, please, *urgently* upgrade now all your sites and forward this message to people using old CB releases! Thank you!
CB 1.1 has been released almost 2 years ago on August 9th 2007, without any discovered exploitable vulnerabilities and exploits during almost 2 years up to yesterday.
CB 1.2 stable has been released 27 January 2009, almost 6 months ago now, introduces many new levels of security, and is a very smooth upgrade to CB 1.1 and earlier (there is a README_UPGRADE.txt file in package), CB 1.2.1, released less than a month ago, fixes all reported issues of CB 1.2, so is really stable. CB development continues full steam ahead with an expanded team.
You can download CB 1.2.1 now by clicking this link and logging in on joomlapolis, then click the "download" button.

https://www.joomlapolis.com/index2.php? ... &no_html=1

***************************

PS. ne znam da li je možda bolje ovaj post prebaciti u forum "joomla dodaci".

User avatar
VM Srbija
Joomla! Guru
Joomla! Guru
Posts: 721
Joined: Fri Mar 27, 2009 6:18 pm

Re: Izašao kritični update Community Builder-a 1.2.1

Post by VM Srbija » Thu Jun 18, 2009 11:46 pm

Pa vezano je za Critical security Update, tako da valjda spada pod bezbednost.
It is all in my mind!!!

User avatar
Vrlo Jak Tim
Joomla! Hero
Joomla! Hero
Posts: 2319
Joined: Mon Nov 07, 2005 12:58 am
Location: Bar, Crna Gora

Re: Izašao kritični update Community Builder-a 1.2.1

Post by Vrlo Jak Tim » Fri Jun 19, 2009 11:49 am

ajfile, sad si je pustio u javnost. E ništa čovjek od tebe ne može sakriti... :)
Dragan Djordjevic
Member of Joomla! Montenegrin Translation Team
http://www.joomlamontenegro.com

User avatar
ajfile
Joomla! Guru
Joomla! Guru
Posts: 595
Joined: Tue Sep 18, 2007 2:59 pm
Location: Beograd
Contact:

Re: Izašao kritični update Community Builder-a 1.2.1

Post by ajfile » Fri Jun 19, 2009 1:40 pm

:D da da , ja i ceo joomlapolis team

ma ja, po prirodi sumljičav, verujem da je vest o "criticatl security update-u" patka, marketing, ono da nateraju raju da pređu na novu verziju,, niko dve godine nije našao bug u CB-u i sad odjednom hopla evo je al nije za javnost,, mada možda grešim dušu

što ne kažu gde je rupa pa da probamo :D

off off


Locked

Return to “Bezbednost”