Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 6 of 6
  1. #1
    Member
    Join Date
    Mar 2004
    Location
    This Planet
    Posts
    984

    Default Security Vulnerability?

    http://secunia.com/advisories/15770/

    Any news from cPanel on this?

    Thanks
    Anup

  2. #2
    Super Moderator This forum account has been confirmed by cPanel staff to represent a vendor. chirpy's Avatar
    Join Date
    Jun 2002
    Location
    Go on, have a guess
    Posts
    13,495

    Default

    You should email the link to security@cpanel.net
    Jonathan Michaelson

    Need your cPanel servers secured and tuned?
    cPanel Server Configuration, Security, Recovery and Antivirus/AntiSpam Services
    Developers of the most effective (and free) Firewall & Security Solution for cPanel Servers - csf
    http://www.configserver.com

  3. #3
    cPanel Staff
    Join Date
    Dec 2001
    Location
    Houston, TX
    Posts
    1,881

    Default

    This is a known and fixed problem, it was released a few days ago but only affects versions of cpanel somewhere around 6 months old (cpanel 10.x is not affected). for anyone who has not updated in quite some time, updating to the latest release of whatever build version you follow will fix it.

  4. #4
    Member
    Join Date
    Mar 2004
    Location
    This Planet
    Posts
    984

    Default

    Quote Originally Posted by darren
    This is a known and fixed problem, it was released a few days ago but only affects versions of cpanel somewhere around 6 months old (cpanel 10.x is not affected). for anyone who has not updated in quite some time, updating to the latest release of whatever build version you follow will fix it.
    From secunia:
    The vulnerability has been confirmed in version 10.2.0-R82. Other versions may also be affected.

    Not sure what this means as

    RELEASE
    10.2.0-RELEASE_82
    (Sat May 7 17:32:13 2005)

    Is the one that's available latest.

    Anup

  5. #5
    Member DigiCrime's Avatar
    Join Date
    Nov 2002
    Posts
    388

    Default

    i posted this on bugzillia early this morning I got yelled at for it I forget about sending it to security@cpanel.net

    Oh well

  6. #6
    cPanel Staff
    Join Date
    Dec 2001
    Location
    Houston, TX
    Posts
    1,881

    Default

    Hello again,
    I investigated this a bit further and found that some browsers still allow for it to work. The head developer put in a patch for it that is out in EDGE now, so if anyone is looking to test it, that's the build you need.

Similar Threads & Tags
Similar threads

  1. zlib security vulnerability ?
    By IRCBrasil in forum cPanel and WHM Discussions
    Replies: 5
    Last Post: 11-17-2005, 04:36 AM
  2. Security vulnerability: phpBB
    By Planet_Master in forum cPanel and WHM Discussions
    Replies: 21
    Last Post: 11-19-2004, 06:46 PM
  3. Clam AV Security Vulnerability
    By hostingmetro in forum cPanel and WHM Discussions
    Replies: 148
    Last Post: 05-23-2004, 04:46 AM
  4. ClamAV Security Vulnerability
    By fizz in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 05-14-2004, 09:09 AM
  5. Security vulnerability in PHP
    By GordonH in forum cPanel and WHM Discussions
    Replies: 10
    Last Post: 12-31-2003, 10:18 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube