Archive for Plesk
Following bugs have been fixed:
[-] (Windows only) Security fix: ISC BIND 9 Recursive Queries Remote Denial of Service Vulnerability
[-] (Linux only) Security fix: ProFTPD Response Pool Use-After-Free Vulnerability.
[-] Panel removes current key on cleanKeysHistory command from Key Administrator server
Following bugs have been fixed:
[-] (Windows only) Security fix: ISC BIND 9 Recursive Queries Remote Denial of Service Vulnerability
[-] (Linux only) Security fix: ProFTPD Response Pool Use-After-Free Vulnerability.
[-] Panel removes current key on cleanKeysHistory command from Key Administrator server
Following bugs have been fixed:
[-] (Windows only) Security fix: ISC BIND 9 Recursive Queries Remote Denial of Service Vulnerability
[-] (Linux only) Security fix: ProFTPD Response Pool Use-After-Free Vulnerability
Following bugs have been fixed:
[-] (Windows only) Security fix: ISC BIND 9 Recursive Queries Remote Denial of Service Vulnerability
[-] (Linux only) Security fix: ProFTPD Response Pool Use-After-Free Vulnerability
Following bugs have been fixed:
[-] (Windows only) Security fix: ISC BIND 9 Recursive Queries Remote Denial of Service Vulnerability
[-] (Linux only) Security fix: ProFTPD Response Pool Use-After-Free Vulnerability
Following bugs have been fixed:
[-] (Windows only) Security fix: ISC BIND 9 Recursive Queries Remote Denial of Service Vulnerability
[-] (Linux only) Security fix: ProFTPD Response Pool Use-After-Free Vulnerability
The following bugs have been fixed:
[-] Daily maintenance script fails if Plesk Acronis Backup module is installed
[-] Backup to network share doesn’t work
[-] Errors during SiteBuilder site publishing if Plesk has been installed to /var/local
[-] WatchDog can’t start sw-cp-server service after failing
[-] Applications that can not be installed in Plesk have been hidden from the Application catalog
[-] If you try to set a password for mail account that contains the symbol “£” is an error with no clear message
The following bugs have been fixed:
[-] Possible security vulnerability due to insufficient validation of input parameters
[-] Bugfixes from the billing team for 10.4.4 MU#3
[-] No subdomains in Plesk GUI after upgrade
[-] Errors during SiteBuilder site publishing if Plesk has been installed to /var/local
[-] Error when managing a Java application on a subdomain
[-] Embedded Video blocks images in SiteBuilder Image Gallery
[-] Applications that can not be installed in Plesk have been hidden from the Application catalog
[-] Only featured apps from Infrastructure category showing on Server > Tools & Settings
[-] Not all the images have been migrated from SiteBuilder 4.5 site’s image gallery
[-] plesk_agent_manager.exe fails with unhandled exception if psarepository.dll was replaced to old version
[-] plesk_agent_manager.exe silently fails if psadumpschema.dll was replaced to old version
[-] Automatic user login of Plesk SugarCRM did not work
[-] If you try to set a password for mail account that contains the symbol "£" is an error with no clear message
Please, check article http://kb.parallels.com/en/112790 for details.
– plesk_agent_manager.exe fails with unknown error if some of dependant module of psarepository.dll has been changed to binary incompatible version.
– problem with displaying Polish locale in hosting panel.
– plesk_agent_manager.exe fails with unknown error if some of dependant module of psarepository.dll has been changed to binary incompatible version.
– problem with displaying Polish locale in hosting panel.
[-] Parallels Plesk Panel removes the current license key during an upgrade license key.
[-] (Windows only) Microupdates will not be installed if Tomcat(JRE) has been installed before upgrade to Parallels Plesk Panel 10.x version.
[-] Parallels Plesk Panel removes the current license key during an upgrade license key.
[-] (Windows only) Microupdates will not be installed if Tomcat(JRE) has been installed before upgrade to Parallels Plesk Panel 10.x version.
The issue with automatic Microupdates installation was found. The article provides steps to know is it actual issue for you and how to apply the fix.
[-] Search filter for applications does not work in Application Vault.
[-] Function ‘Make a Copy’ does not work for MySQL databases.
[-] Some words in Customer & Business Manager Store were not translated in Russian locale.
[-] Search filter for applications does not work in Application Vault.
[-] Function ‘Make a Copy’ does not work for MySQL databases.
[-] Some words in Customer & Business Manager Store were not translated in Russian locale.
[-] (Windows only) During Parallels Plesk Panel operation Error 500 randomly occurs due to IIS application pool crash.
[-] (Windows only) Backup will be always failed when additional domain has mailing list.
[-] There is no able to set spam filter setting “Mark spam messages by adding the following text to message subject” empty, to don’t change subject of spam messages.
[-] (Windows only) During Parallels Plesk Panel operation Error 500 randomly occurs due to IIS application pool crash.
[-] (Windows only) Backup will be always failed when additional domain has mailing list.
[-] There is no able to set spam filter setting “Mark spam messages by adding the following text to message subject” empty, to don’t change subject of spam messages.
[-] (Linux only) Customers failed to log in to their webmail accounts if they used an internationalized domain name for the mail server.
[-] (Linux only) Panel corrupted Apache configuration files if a server had more than 300 assigned IP addresses. Administrators received the following error in Server Administration Panel: “New files of configuration for Apache web server were not built due to errors in configuration templates. The detailed error message was e-mailed to you, so please check the e-mail, fix the errors, and click here to retry generating configuration.
”.
[-] (Linux only) When administrators created a subscription in the suspended state and then activated it using a certain API call, the mail server still considered that domains under the subscription were disabled.
[-] (Linux only) Customers failed to perform website copying in Control Panel as it hung up with the status message “Copying the website example.com to example2.com. You will be notified of the progress by e-mail ([email protected])
”.
[-] (Linux only) The user experience of working with phpMyAdmin is improved by removing a warning about the difference between the PHP MySQL library version and the MySQL server version.
[-] (Linux only) Administrators failed to reconfigure Apache using the command “/usr/local/psa/admin/bin/httpdmng --reconfigure-all
” if one of sites had a custom vhost.conf file that was removed.
[-] (Windows only) Administrators failed to back up reseller accounts using the command-line call with the error “Unrecognized option: '-from-file'
”.
[-] (Windows only) The following confusing message accidentally shown in phpMyAdmin to Panel users was removed “Your PHP MySQL library version 5.0.90 differs from your MySQL server version 5.1.50. This may cause unpredictable behaviour. This message can be safely ignored. The reason that the library cannot be upgraded with the server is that, in Enterprise Linux, everything is compiled around the old library. Upgrading the library would break a number of programs compiled against it so, for compatibility's sake, it must remain as the one provided by the vendor directly. If you REALLY need the latest libraries you can recompile php from the SRPMS.
”.
[-] (Windows only) Some symbols in the German locale (like “o” or “?”) were displayed incorrectly in the Panel GUI.
[-] (Windows only) Panel failed to propagate some tasks with complex schedule to the system scheduler. Such tasks were successfully created by administrators in Server Administration Panel but the Windows event log contained the error “The task XML contains too many nodes of the same type.
”.
[-] (Windows only) Customers failed to upload files in File Manager after the upgrade from Panel 10.1.1 with the error “Unable to upload C:fakepathfilename.doc to //httpdocs/C:fakepathfilename.doc: Improper value.
”.
[-] (Windows only) Panel failed to perform its daily maintenance routines after upgrade with various errors related to SpamAssassin and Perl.
[-] (Linux) Unable to delete domain without DNS zone recorded in Plesk Panel database
[-] Virtual host directory is not getting removed during hosting type switch onto Standard Forwarding
[-] (Windows only) The backup of ASP controller database, AtMail and Horde webmail applications is not created during Plesk panel upgrade
[-] (Linux) Unable to delete domain without DNS zone recorded in Plesk Panel database
[-] Virtual host directory is not getting removed during hosting type switch onto Standard Forwarding
[-] (Windows only) The backup of ASP controller database, AtMail and Horde webmail applications is not created during Plesk panel upgrade
Parallels Plesk Panel 8.6.0 for Windows, 9.3.0 for Windows and 9.5.5 for Windows security fixes
Security fixes:
[-] XSS injection on backup creation page
[-] XSS injection in “Location” HTTP header
[-] HTTPOnly flag added for the session cookie
Security fixes:
[-] XSS injection on backup creation page
[-] XSS injection in “Location” HTTP header
[-] HTTPOnly flag added for the session cookie
The patch for Parallels Plesk Panel 9.5.5 for Windows is available at: http://download1.parallels.com/Plesk/Expand/2.3.2/hotfixes/plesk-9.5.5.win-hotfix1.zip
Security fixes:
[-] HTTPOnly flag added for the session cookie