Community Forums
Connect with us on LinkedIn
Community Notice
+ Reply to Thread
Page 5 of 19 FirstFirst ... 3 4 5 6 7 15 ... LastLast
Results 61 to 75 of 279
  1. #61
    Member
    Join Date
    Jun 2004
    Location
    Jonesboro, AR
    Posts
    15

    Default

    Ack.. I just upgraded to CURRENT_13 earlier today when the exploit was first patched and now we're up to CURRENT_14 already. I hope (assume) the patch is applied on 14?

    Edit: Apparently CURRENT_13 (that was released this afternoon after we had been told everything was fixed) didn't have the patch because when I upgraded to CURRENT_14 it said:

    cPanel Layer 2 Install Complete

    Patching Hooks (1)
    Patching Hooks (2)
    Patching Mysql (1)
    Patching Mysql (2)
    Patching Mysql (3)
    Patching Mysql (4)
    Last edited by mchase; 09-23-2006 at 10:17 PM.
    Michael Chase
    Clear-Data Internet Services - Inexpensive website, reseller, and game server hosting.

  2. #62
    Member nyjimbo's Avatar
    Join Date
    Jan 2003
    Location
    New York
    Posts
    1,082

    Default

    Quote Originally Posted by mchase
    Ack.. I just upgraded to CURRENT_13 earlier today when the exploit was first patched and now we're up to CURRENT_14 already. I hope (assume) the patch is applied on 14?

    Edit: Apparently CURRENT_13 (that was released this afternoon after we had been told everything was fixed) didn't have the patch because when I upgraded to CURRENT_14 it said:

    cPanel Layer 2 Install Complete

    Patching Hooks (1)
    Patching Hooks (2)
    Patching Mysql (1)
    Patching Mysql (2)
    Patching Mysql (3)
    Patching Mysql (4)
    We went to 13 tonight and saw the same patching notes.
    "A dog has raised it’s hind leg on the age of nevermore !"
    -- Rolf

  3. #63
    Member
    Join Date
    Jun 2004
    Location
    Jonesboro, AR
    Posts
    15

    Default

    Quote Originally Posted by nyjimbo
    We went to 13 tonight and saw the same patching notes.
    Are you on the Linux or FreeBSD tree? We're on the FBSD one, maybe that makes the difference.
    Last edited by mchase; 09-23-2006 at 10:59 PM.
    Michael Chase
    Clear-Data Internet Services - Inexpensive website, reseller, and game server hosting.

  4. #64
    EWD
    EWD is offline
    cPanel Partner NOC cPanel Partner NOC Badge
    Join Date
    Aug 2003
    Location
    NY
    Posts
    164

    Default

    Does anyone know any tell tales about this exploits?
    Anyone know how to identify it?

    There could be a lot of sitting zombies out there just waiting for the "master's" command.
    Emerson

  5. #65
    cPanel Staff cpanelnick's Avatar
    Join Date
    Feb 2003
    Location
    Houston, TX
    Posts
    4,514

    Default

    Quote Originally Posted by EWD
    Does anyone know any tell tales about this exploits?
    Anyone know how to identify it?

    There could be a lot of sitting zombies out there just waiting for the "master's" command.
    Here is a quick script to check. Its not fancy but should do the trick.

    It will print out 'safe' or 'not safe'
    Attached Files

  6. #66
    Member
    Join Date
    Aug 2002
    Posts
    1,118

    Default

    I ran this on a release build and it reported not safe. Does this mean the security fix is not included in release?

  7. #67
    Member
    Join Date
    Jan 2003
    Posts
    169

    Default

    On latest RELEASE branch here as well and also get "not safe" ??? So has the patch been applied via upcp or not?

  8. #68
    Member xisn's Avatar
    Join Date
    Dec 2004
    Posts
    117
    cPanel/Enkompass Access Level

    Root Administrator

    Default

    I am running WHM 10.8.0 cPanel 10.9.0-C19 and it reported safe Thanks Nick !

    Quote Originally Posted by sparek-3
    I ran this on a release build and it reported not safe. Does this mean the security fix is not included in release?

  9. #69
    cPanel Partner NOC cPanel Partner NOC Badge
    Join Date
    Oct 2003
    Posts
    1,914

    Default

    I did the same and after running upcp again it came back safe
    Lowest Host/Empire Technology LLC
    Affordable hosting solutions http://empire-hosting.net
    List Your hosting site FREE in http://hostgeneration.com

  10. #70
    Member
    Join Date
    Aug 2002
    Posts
    1,118

    Default

    Quote Originally Posted by dalem
    I did the same and after running upcp again it came back safe
    This does indeed appear to be the case. I'm just going on my own assumptions now, but apparently whatever the script that Nick posted checks, it was not updated in Release until just a few moments ago. Whether or not this means a "not safe" system is unpatched, I don't know. I know I did run upcp on all of our server this afternoon and they all appear to be reporting "not safe" until I rerun upcp. I suspect this is also the case for anyone running the Stable tree.

  11. #71
    cPanel Staff cpanelnick's Avatar
    Join Date
    Feb 2003
    Location
    Houston, TX
    Posts
    4,514

    Default

    Quote Originally Posted by qwerty
    On latest RELEASE branch here as well and also get "not safe" ??? So has the patch been applied via upcp or not?
    Make sure to run upcp first. If you have a webcache on your connection you may need to clear it first.

  12. #72
    Member
    Join Date
    May 2003
    Posts
    14

    Default

    Hi,
    Upgraded mine to C13 but I'm having issues with mailserver.

    1. Squirrel mail is fine
    2. Horde mail gives me this error message:
    Internal Server Error

    Unable to open engine binary (php) at cpsrvd-ssl.pl line 4396
    main:hpHandler() called at cpsrvd-ssl.pl line 3305
    main::dodoc_webmaild() called at cpsrvd-ssl.pl line 637
    main::dodoc() called at cpsrvd-ssl.pl line 543

    3. POP3 in Outlook Express unable to connect

    Tried rebuilding exim but same problem.

    Any idea?

    Thanks.

  13. #73
    cPanel Partner NOC cPanel Partner NOC Badge
    Join Date
    Mar 2002
    Posts
    52

    Default

    Quote Originally Posted by JamesSmith
    I am very annoyed at this problem and the lack of useful communication from cPanel. All we have is something in WHM telling us to update, no other information. I dont know about everyone else, but if there’s a security problem with the software we use to host 1000's of web sites, run our business and pay cPanel $1000's a month for the privilege, then I would like to know more information.
    I would have to completely agree here. The least that could be done is a direct email to all technical contacts that have distributor/partner status with cPanel. We've had to gather a majority of our information from webhostingtalk/hostgator-forums and this thread.

  14. #74
    cPanel Staff cpanelnick's Avatar
    Join Date
    Feb 2003
    Location
    Houston, TX
    Posts
    4,514

    Default

    Quote Originally Posted by michaelfoo
    Hi,
    Upgraded mine to C13 but I'm having issues with mailserver.

    1. Squirrel mail is fine
    2. Horde mail gives me this error message:

    3. POP3 in Outlook Express unable to connect

    Tried rebuilding exim but same problem.

    Any idea?

    Thanks.
    might want to see what

    ldd /usr/local/cpanel/3rdparty/bin/php

    shows

  15. #75
    Member
    Join Date
    May 2003
    Posts
    14

    Default

    Quote Originally Posted by cpanelnick
    might want to see what

    ldd /usr/local/cpanel/3rdparty/bin/php

    shows
    Good day,
    Here you go:

    Code:
    root@host [/]# ldd /usr/local/cpanel/3rdparty/bin/php
            libcrypt.so.1 => /lib/libcrypt.so.1 (0x40020000)
            libpq.so.3 => /usr/local/cpanel/lib/libpq.so.3 (0x4004f000)
            libmysqlclient.so.14 => /usr/local/cpanel/lib/libmysqlclient.so.14 (0x40061000)
            libpam.so.0 => /lib/libpam.so.0 (0x40168000)
            libintl.so.3 => /usr/local/cpanel/lib/libintl.so.3 (0x40170000)
            libc.so.6 => /lib/tls/libc.so.6 (0x40179000)
            libpng.so.2 => /usr/local/cpanel/lib/libpng.so.2 (0x402a3000)
            libz.so.1 => /usr/local/cpanel/lib/libz.so.1 (0x402c7000)
            libresolv.so.2 => /lib/libresolv.so.2 (0x402d6000)
            libm.so.6 => /lib/tls/libm.so.6 (0x402e9000)
            libnsl.so.1 => /lib/libnsl.so.1 (0x4030c000)
            libxml2.so.2 => /usr/local/cpanel/lib/libxml2.so.2 (0x40322000)
            libdl.so.2 => /lib/libdl.so.2 (0x4043b000)
            libaudit.so.0 => /lib/libaudit.so.0 (0x40440000)
            /lib/ld-linux.so.2 (0x40000000)
    root@host [/]#
    Edit: Just upgraded to C19. No luck with it as well. Anyone encountering the same problem as mine?
    Last edited by michaelfoo; 09-24-2006 at 01:31 AM.

+ Reply to Thread
Page 5 of 19 FirstFirst ... 3 4 5 6 7 15 ... LastLast
Similar Threads & Tags
Similar threads

  1. Possible Exploit?
    By CoryHawk in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 10-03-2007, 04:31 PM
  2. Major Major Problems
    By freemchr in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 01-11-2004, 04:21 AM
  3. SSH exploit
    By sparek-3 in forum cPanel and WHM Discussions
    Replies: 19
    Last Post: 10-06-2003, 08:37 AM
  4. ProFTP Exploit
    By Angel78 in forum cPanel and WHM Discussions
    Replies: 19
    Last Post: 09-28-2003, 09:54 PM
  5. proftpd exploit
    By JamesSmith in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 09-24-2003, 12:10 AM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube