The second release candidate for WordPress 3.5 is now available for download and testing. We’re still working on about a dozen remaining issues, but we hope to deliver WordPress 3.5 to your hands as early as next week. If you’d like to know what to test, visit the About page ( → About in the toolbar) and check out […]
Archive for November, 2012
Ubuntu: 1641-1: OpenStack Keystone vulnerabilities
(Nov 28) Keystone would allow unintended access to files over the network.
Debian: 2578-1: rssh: insufficient filtering of r
(Nov 27) James Clawson discovered that rssh, a restricted shell for OpenSSH to be used with scp/sftp, rdist and cvs, was not correctly filtering command line options. This could be used to force the execution of a remote script and thus allow arbitrary command execution. Two CVE were assigned: [More…]
The following new functionality has been added:
[+] Open SuSE 12.2 suport has been added
[+] SmarterMail 10 Antivirus support has been added. Please check additional info in KB article http://kb.parallels.com/115223
[+] MailEnable has been updated to version 6.70
[+] (Windows only) PHP 5.3 has been updated to version 5.3.19
The following bug has been fixed:
[*] (Linux only) Ability to choose custom protocol when adding DNS record of "SRV" type (28701)
[-] (Windows only) There is unable to add "SRV" DNS record if "Priority of service" and "Weight of service" are not equal (28701)
[-] There is unable to migrate mail account with password which contains space of quote characters (23661)
[-] Cron jobs are not run on Ubuntu installed inside Parallels Virtuozzo Container
(Nov 20) A testsuite regression was fixed in Django.
Ubuntu: 1634-1: Python Keyring vulnerabilities
(Nov 20) Several security issues were fixed in Python Keyring.
Ubuntu: 1640-1: libssh vulnerabilities
(Nov 26) linssh could be made to crash or run programs if it received speciallycrafted network traffic.
Ubuntu: 1635-1: libunity-webapps vulnerability
(Nov 21) libunity-webapps could be made to crash or run programs as your login if itopened a malicious website.
Ubuntu: 1637-1: Tomcat vulnerabilities
(Nov 21) Several security issues were fixed in Apache Tomcat.
Ubuntu: 1638-1: Firefox vulnerabilities
(Nov 21) Several security issues were fixed in Firefox.
Ubuntu: 1636-1: Thunderbird vulnerabilities
(Nov 21) Multiple security issues were fixed in Thunderbird.
Red Hat: 2012:1481-01: kernel: Low Advisory
(Nov 20) Updated kernel packages that fix one security issue and three bugs are now available for Red Hat Enterprise Linux 5.6 Extended Update Support. The Red Hat Security Response Team has rated this update as having low [More…]
Red Hat: 2012:1483-01: thunderbird: Critical Advisory
(Nov 20) An updated thunderbird package that fixes several security issues is now available for Red Hat Enterprise Linux 5 and 6. The Red Hat Security Response Team has rated this update as having critical [More…]
Debian: 2576-1: trousers: denial of service
(Nov 23) Andy Lutomirski discovered that tcsd (the TPM userspace daemon) was missing a of input validation. Using carefully crafted input, it can lead to a denial of service by making the daemon crash with a segmentation fault. [More…]
(Nov 21) This update provides compatible ubufox packages for the latest Firefox.
Ubuntu: 1639-1: unity-firefox-extension vulnerability
(Nov 22) unity-firefox-extension could be made to crash or run programs as yourlogin if it opened a malicious website.
Red Hat: 2012:1482-01: firefox: Critical Advisory
(Nov 20) Updated firefox packages that fix several security issues are now available for Red Hat Enterprise Linux 5 and 6. The Red Hat Security Response Team has rated this update as having critical [More…]
Red Hat: 2012:1485-01: java-1.4.2-ibm: Critical Advisory
(Nov 22) Updated java-1.4.2-ibm packages that fix several security issues are now available for Red Hat Enterprise Linux 5 Supplementary. This is the last update of these packages for Red Hat Enterprise Linux 5 Supplementary. [More…]
The following new functionality has been added:
[+] SmarterMail 10.6 support. Note there are Known Issues and Limitation for SmarterMail 10.6 support. Please check KB article http://kb.parallels.com/en/115180.
The following bug has been fixed:
[-] Cannot install license key for Plesk Panel working in Parallels Server Bare Metal (121855)
[-] Web Presence Builder: site cannot be published with error "Not registered key blogsny2pp87a73 in context"
[-] Plesk resets subdomain forwarding after syncing subscription with hosting plan (117199)
[-] Error "column "fileSharingUser" is not in the row" occurs if record absent in fileSharingUsers table (106712)
[-] (Windows only) Migration manager holds on long data in MS SQL database dump (109603)
[-] (Windows only) MS SQL databases can’t be migrated to 11.0.9 MU #11 if DumpMsSqlToScript = false in registry (123056)
[-] Wrong resource calculation blocks subdomains creation if oversell is switched off. (108238)
[-] Domain’s FTP users does not backuped if Perl 5.10.x. installed on server (122467)
Red Hat: 2012:1455-01: gegl: Moderate Advisory
(Nov 12) Updated gegl packages that fix one security issue are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having moderate [More…]
Red Hat: 2012:1459-01: nspluginwrapper: Low Advisory
(Nov 13) Updated nspluginwrapper packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having low [More…]
Parallels Plesk 11.0.9 MU#27 for Windows and Linux – Functional fixes – is available through the Autoinstaller
Plesk Panel 11.0.9 MU#27 for Windows and Linux – Functional fixes – is available since November 22, 2012 through the Autoinstaller
Please, check http://kb.parallels.com/115179 for more details.
The first release candidate for WordPress 3.5 is now available. We hope to ship WordPress 3.5 in two weeks. But to do that, we need your help! If you haven’t tested 3.5 yet, there’s no time like the present. (The oft-repeated warning: Please, not on a live site, unless you’re adventurous.) Think you’ve found a […]
Red Hat: 2012:1445-01: kernel: Low Advisory
(Nov 13) Updated kernel packages that fix one security issue and several bugs are now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having low [More…]
Red Hat: 2012:1462-01: mysql: Important Advisory
(Nov 14) Updated mysql packages that fix several security issues are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having [More…]
Parallels Plesk Automation 11.0 MU#3
The following new functionality has been added:
[+] Upgraded libcurl(7.15.5) to latest version
[+] Updated PPA localization
The following bugs have been fixed:
[-] Fixed bug with attaching servide node to PPA using sudo account (122291)
[-] Added more explanations for time desync error between MN & SN (122290)
[-] Activated service “iptables” after reboot system (123341)
Ubuntu: 1629-1: libproxy vulnerabilities
(Nov 12) libproxy could be made to crash or run programs if it received speciallycrafted network traffic.
Ubuntu: 1630-1: Libav vulnerabilities
(Nov 12) Libav could be made to crash or run programs as your login if it opened aspecially crafted file.
Red Hat: 2012:1461-01: libproxy: Moderate Advisory
(Nov 14) Updated libproxy packages that fix one security issue are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having moderate [More…]
Red Hat: 2012:1465-01: java-1.5.0-ibm: Critical Advisory
(Nov 15) Updated java-1.5.0-ibm packages that fix several security issues are now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical [More…]