vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   News and Announcements (https://vborg.vbsupport.ru/forumdisplay.php?f=2)
-   -   vBulletin 3.0.5 Released - Critical Update (https://vborg.vbsupport.ru/showthread.php?t=73934)

assassingod 01-07-2005 06:34 AM

vBulletin 3.0.5 Released - Critical Update
 
http://www.vbulletin.com/forum/showthread.php?t=125480

[high]This is a CRITICAL update[/high]

vBulletin 3.0.5 has been released due to a serious security flaw in all vBulletin 3 versions, including 3.0.4

It is a critical update and is recommended you upgrade immediately .

Important information about the vulnerability can be found in the thread, link at the top of this post:

Quote:


Important Warning About Sensitive Data

Due to the nature of the vulnerability discovered in vBulletin 3, and as part of our ongoing effort to maximize security, we must assume that one or all of the vBulletin servers may have been compromised.

Therefore, we would STRONGLY RECOMMEND that any customers who may have submitted sensitive data; such as vBulletin admin control panel or server login details, to Jelsoft staff in the past should take steps to alter these details, so that any information that may have been accessed by an unauthorized party could not be used.
Discussion about the thread is here

lasto 01-07-2005 08:50 AM

just done the init.php cant be bothered updating again

yep the one for 3.0.5

ManagerJosh 01-07-2005 09:12 AM

Quote:

Originally Posted by assassingod
http://www.vbulletin.com/forum/showthread.php?t=125480

[high]This is a CRITICAL update[/high]

vBulletin 3.0.5 has been released due to a serious security flaw in all vBulletin 3 versions, including 3.0.4

It is a critical update and is recommended you upgrade immediately .

Important information about the vulnerability can be found in the thread, link at the top of this post:



Discussion about the thread is here

When can we expect the update to be performed here? :D

Mark.B 01-07-2005 09:42 AM

This is actually a bit of a poor show.

I've just spent three days rehacking my board for the upgrade to 3.0.4 and now I'm expected to do it all again. And for what? So 3.0.6 can be released days later?

This is the second time in succession that a release of vBulletin has effectively been botched. Everyone is congratulating the team on another release, and I am usually very supportive, but on this occasion there's been a big botch, and for the second time running.

The whole point of purchasing forum software instead of using the free programs is that this sort of messing about should not be neccessary.

zurih 01-07-2005 09:44 AM

Quote:

Originally Posted by Mark.B
This is actually a bit of a poor show.

I've just spent three days rehacking my board for the upgrade to 3.0.4 and now I'm expected to do it all again. And for what? So 3.0.6 can be released days later?

This is the second time in succession that a release of vBulletin has effectively been botched. Everyone is congratulating the team on another release, and I am usually very supportive, but on this occasion there's been a big botch, and for the second time running.

The whole point of purchasing forum software instead of using the free programs is that this sort of messing about should not be neccessary.

especially when u have a lot of hacks installed.

strongy 01-07-2005 10:06 AM

again, but i just finished fiddling with hacks, it'll have to wait *uploads that init.php though*

Creative Suite 01-07-2005 10:34 AM

woow , We are in era of the speed :p

, just wanna ask about 3.0.6 :D

Montadiat.com 01-07-2005 10:36 AM

yeah ,

<<< looking out for 3.0.6 :D

Paul M 01-07-2005 11:01 AM

So, the only difference between 3.0.4 and 3.0.5 is init.php ?

Erwin 01-07-2005 11:13 AM

Quote:

Originally Posted by Mark.B
This is actually a bit of a poor show.

I've just spent three days rehacking my board for the upgrade to 3.0.4 and now I'm expected to do it all again. And for what? So 3.0.6 can be released days later?

This is the second time in succession that a release of vBulletin has effectively been botched. Everyone is congratulating the team on another release, and I am usually very supportive, but on this occasion there's been a big botch, and for the second time running.

The whole point of purchasing forum software instead of using the free programs is that this sort of messing about should not be neccessary.

This is not Jelsoft's fault.

This is a NEW security loophole that is present in ALL vB 3 forums except for the latest version, and is not caused by the release of 3.0.4.

They've just discovered the loophole, that's all. It was already there.

So this has nothing to do with a botched release. It's just coincidental.


All times are GMT. The time now is 06:16 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01053 seconds
  • Memory Usage 1,739KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (4)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (2)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete