The Ultimate Weblog System

Welcome to Geeklog
Saturday, July 04 2009 @ 04:27 AM EDT

Geeklog 1.4.0sr4

Security

To address the recently posted exploits for insecure installations and for the mcpuk file manager, we are releasing Geeklog 1.4.0sr4.

In this release, we've removed the file manager altogether, so you will no longer be able to upload images through FCKeditor (this will be enabled again when we release Geeklog 1.4.1 with FCKeditor 2.3). We've also added additional protection against code execution in case of insecure installations but suggest that you really protect your Geeklog install properly as explained in the installation instructions and in the FAQ.

We are not releasing any updates for these issues as they wouldn't make much sense. In case of the first exploit, it's really an installation problem that should be fixed and in the case of the file manager, files will have to be removed (as explained in the article linked to above).

Please note that the first issue applies to all Geeklog releases, while the second only applies to all the 1.4.0 releases.

Trackback

Trackback URL for this entry: http://www.geeklog.net/trackback.php/geeklog-1.4.0sr4

Here's what others have to say about 'Geeklog 1.4.0sr4':

E's Site - Geeklog upgrade
Tracked on Friday, July 07 2006 @ 01:59 AM EDT

http://www.blogsweek.com/en/geeklog-140sr4/
Tracked on Sunday, November 26 2006 @ 12:36 PM EST

Geeklog 1.4.0sr4 | 2 comments | Create New Account
The following comments are owned by whomever posted them. This site is not responsible for what they say.
Geeklog 1.4.0sr4
Authored by: griffman on Saturday, July 01 2006 @ 09:43 AM EDT
I'm assuming the files that are already there (test.pdf, index.html, some pictures and icons) are part of the GL distribution, correct?

What, exactly, are those directories used for?

-rob.
Geeklog 1.4.0sr4
Authored by: Blaine on Saturday, July 01 2006 @ 10:50 AM EDT
Those directories are used with the fckeditor - default folders for storing images, files (media types). The test.pdf and a few images are there as example images and files.

---
Geeklog components by PortalParts -- www.portalparts.com