PHP 5.3 upgraded to version 5.3.15 in Parallels Plesk 11.0.9 for Windows
Posts Tagged PHP
Switching from compile-on-demand to binary packages
For many years installing and using cPanel & WHM has involved compiling software on-demand. Want Apache and PHP? Run /scripts/easyapache, which builds those and all dependencies from source. Want perl installed? Download and run the perl installer from httpupdate.cpanel.net, which…
[+] PHP has been upgraded to version 5.3.13
The following bugs have been fixed:
[-] Wrong statistic calculating by Webalizer for domain with several aliases
[-] Mail can’t be processed if plesksrv.exe hangs on due multiple run of mailmng –reset-cache
[+] PHP has been upgraded to version 5.3.13
The following bugs have been fixed:
[-] Wrong statistic calculating by Webalizer for domain with several aliases
[-] Mail can’t be processed if plesksrv.exe hangs on due multiple run of mailmng –reset-cache
cPanel & WHM servers using the default cPanel PHP CGI configuration are not vulnerable to the command line switch vulnerability. A recently disclosed flaw in PHP’s CGI implementation allows malicious users to remotely view and execute source code. The exploit…
EasyApache 3.12 improves CloudLinux’s modhostinglimits, modmono compatibility on CentOS 4, and mod_ruid2 to suPHP support We are excited to announce the release of EasyApache 3.12. The latest version provides numerous updates. CloudLinux’s mod_hostinglimits has been updated to 0.9-5. This will…
I see a lot of sites get hacked a ton of different ways. This is a topic, that could go on for days. There are 3 major ways, that sites get hacked bad passwords, insecure permissions, out of date software. […] ↓ Read the rest of this entry…
cPanel to End Support for PHP 4 cPanel announces that EasyApache will no longer support PHP 4 beginning May, 2012. PHP 4 has not been actively developed, or supported by the PHP developers, for several years. Many CVEs reported against…
How to update PHP 5.x EZ template on a container to version 5.3
Plesk Service Team is pleased to introduce the PHP 5.x EZ template that allows you to update PHP up to version 5.3 on installed Plesk server.
The following bugs have been fixed:
[-] Blank page in Horde at new message composing because of PHP error Call to undefined function filter_var() in /usr/share/psa-horde/imp/compose.php on line 128
Components update:
[+] (Windows only) PHP has been upgraded to version 5.3.10
[+] (Windows only) phpMyAdmin has been upgraded to version 3.4.9
The following bugs have been fixed:
[-] /usr/local/psa/bin/repair -r throwing error "Argument 1 passed to Service_Dns_Zone::__construct() must be an instance of DNSZone, instance of Db_Table_Row given"
[-] Messed up credit card types at edit billing account page
[-] /usr/local/psa/admin/bin/pmm-ras fails with error while loading shared libraries on CloudLinux 6
[-] Cannot create subdomain for domain with existing alias
[-] (Linux only) Fix of permissions on folder defined in session.save_path of php.ini
[-] (Windows only) PHP warning when update php_version through CLI
[-] Mailman’s apache template has no SSLCertificateFile and SSLCACertificateFile which leads to broken apache configuration.
[-] Migration to a target with openSuSE 11.3 failed with "Unable to create dump" error
[-] Fixed XSS vulnerability in Horde.
New feature has been added:
[+] (Windows only) Support of PHP 5.3 has been added. More details in article http://kb.parallels.com/en/113179
The following bugs have been fixed:
[-] Cross-site scripting in health monitor
[-] Web presence Builder has session identifier without HttpOnly flag
[-] Synchronization of subscription with Service Plan doesn’t work if Service Plan has disabled webhosting
[-] (Linux only) Licence key update failures aren’t logged
[-] (Linux only) Receiving DrWeb license key doesn’t work
[-] (Windows only) Cannot create MSSQL database if MySQL databases limit is 0
[-] (Windows only) Health Monitor fails to create configuraion files on Turkish Windows
cPanel Releases EasyApache 3.8.2 with Support for mod_ruid2
The latest release of EasyApache includes improvements to several third-party libraries and utilities. Updates to EasyApache 3.8.2 include support for mod_ruid2 version 0.9.4. The mod_ruid2 module is a suexec module for Apache 2.0 that provides performance similar that of mod_php…
Next issues have been fixed:
[+] (Only for Unix) The Apache web server with the SNI support is now available for CloudLinux 5.
[+] (Only for Unix) When Panel is installed from the EZ template for CentOS 5, it is possible to set it up to use PHP 5.3 instead of PHP 5.1.
[-] The link to view what’s new in available upgrades on the Administrator’s dashboard opened the release notes for the current product version instead of opening the release notes for the new version.
[-] The pre10-backup-convert utility failed to convert a backup from Plesk 9.5.4 with the error "The called template 'createIpElement' was not found.
" if the backup contained domain names that were not associated with physical hosting.
[-] Customers failed to log in to webmail under an internationalized domain name.
[-] After executing the update-hostname utility, administrators were unable to access Business Manager because Panel redirected them to the URL like https://domain.com//domain.com:8443/plesk-billing/admin
.
[-] Administrators failed to open the Accounts Receivable Ageing report with the error: "Access to this action is restricted. Please update your admin group to allow access to this action
".
[-] Administrators failed to add customer accounts to Business Manager with the error: "Failed to add customer account 'New Customer' ([email protected]): Language not found: language_iso2=zh
".
[-] Panel users failed to upload SSL certificate files with the error "SSLCertificate::check_signs() failed: openssl_x509_checkpurpose() failed
".
[-] (Only for Unix) Administrators failed to edit firewall rules in Panel with the error "Error: Could not activate firewall configuration
".
[-] (Only for Unix) Panel installations failed with the error: "Starting httpd: /usr/sbin/httpd: symbol lookup error: /usr/sbin/httpd: undefined symbol: apr_pool_pre_cleanup_register [FAILED]
".
[-] (Only for Unix) Panel installations from the 10.3.1 EZ template with the PHP 5 support failed with the error "No Match for argument: php-sqlite2
".
[-] (Only for Windows) Options of the assignment and placement policy (in the IIS application pool settings) were actualized.
[-] (Only for Unix) Customers could remove a system directory on a domain (for example, etc/ or bin/) by creating a subdomain which name matched one of the system names (for example, etc.domain.com or bin.domain.com).
[-] (Only for Unix) Panel displayed an outdated instruction about how to retrieve a forgotten password for Panel administrators.
[-] (Only for Unix) Restoration of a domain content failed with the error "Permission denied
" and a part of directories were not restored.
[-] (Only for Unix) Panel data migration failed with the error "launchpad error (Error code = 1)
" if administrators specified the SSH port in the 32768-65535 range.
[-] (Only for Unix) Backup tasks scheduled by resellers did not run.
[-] (Only for Unix) Panel data migration failed with errors if a migrated domain name or a mailbox name contained uppercase characters.
[-] (Only for Unix) Mailing lists were not migrated from 9.x to 10.x versions if the default locale language on a source server was other than English. The migration error in dump.log was as follows: "INFO Unable to found Mailman installation
".
[-] (Only for Windows) After the upgrading Panel from 9.5 to 10 and then migrating subdomains to a different Panel, Administrators received the following error: Execution of "C:Program Files (x86)ParallelsPleskbinsubdomain.exe" --create subdomainname -domain domainname.com -www-root subdomainssubdomainnamehttpdocs -maintenance-mode false failed with return code 1.
.
[-] (Only for Windows) After upgrade from the 10.2 version, msvcr71.dll
and msvcp71.dll
libraries were removed from the system which caused various errors in SpamAssassin, Perl, Python and PHP scripts.
[-] (Only for Windows) A message with instructions about how to change the Panel administrator’s password in case when Panel is integrated with Business Manager contained a broken link to documentation.
[-] (Only for Windows) Panel opened the blank IP Addresses Management page after migration in case one of the registered IP addresses did not match the format.
Next issues have been fixed:
[-] Replacing SSL CA certificate fails with an error
[-] Unable to access in phpmyadmin because an error “Cannot start session without errors, please check errors given in your PHP and/or webserver log file and configure your PHP installation properly”
Plesk Panel 9.5.5 for Windows is available
[+] Coldfusion 9 support is added.
[+] PHP 4.4.9 is included now in Parallels Plesk Panel for Windows distribution.
[+] MailEnable 5.10 is included now in Parallels Plesk Panel for Windows distribution.
[+] MySQL 5.1.56 is included now in Parallels Plesk Panel for Windows distribution.
[+] phpMyAdmin 2.11.11.3 is included now in Parallels Plesk Panel for Windows distribution.
[+] PHP 5.2.17 is included now in Parallels Plesk Panel for Windows distribution.
[+] BIND 9.7.3 is included now in Parallels Plesk Panel for Windows distribution.
[+] Kaspersky Antivirus 8 is included now in Parallels Plesk Panel for Windows distribution.
[-] Issue resolved: Reconfigurator breaks site applications data in siteapppackages and apsapplicationitems tables.
[-] Issue resolved: MSSQL user cannot access the database after migration.
[-] Issue resolved: Sometimes BIND cannot be set when creating a domain .
[-] Issue resolved: Attempt to change IP address type from exclusive to shared is ended with error: withftpmng –change-vhost-ip failed.
[-] Issue resolved: Statistics for domain will not be calculated when "www" prefix for domain is enabled.
[-] Issue resolved: AWstat statistics for domain is not calculated for some days.
[-] Issue resolved: Only one last file are exists in log’s folder after log rotation.
[-] Issue resolved: SpamAssasin adds X-SpamAssassin headers to outgoing mail if spam checking is off.
[-] Issue resolved: Reconfigurator fails on "Repair Plesk Installation -> Plesk Server Accounts" on Windows 2008.
[-] Issue resolved: Notification of finished backup is sent several times.
[-] Issue resolved: New domain is moved to default Plesk IIS application pool instead of application pool of client.
[-] Issue resolved: Multiple Plesk XSS vulnerabilities have been fixed.
[-] Issue resolved: Horde XSS vulnerability has been fixed.
[+] Coldfusion 9 support is added.
[+] PHP 4.4.9 is included now in Parallels Plesk Panel for Windows distribution.
[+] MailEnable 5.10 is included now in Parallels Plesk Panel for Windows distribution.
[+] MySQL 5.1.56 is included now in Parallels Plesk Panel for Windows distribution.
[+] phpMyAdmin 2.11.11.3 is included now in Parallels Plesk Panel for Windows distribution.
[+] PHP 5.2.17 is included now in Parallels Plesk Panel for Windows distribution.
[+] BIND 9.7.3 is included now in Parallels Plesk Panel for Windows distribution.
[+] Kaspersky Antivirus 8 is included now in Parallels Plesk Panel for Windows distribution.
[-] Issue resolved: Reconfigurator breaks site applications data in siteapppackages and apsapplicationitems tables.
[-] Issue resolved: MSSQL user cannot access the database after migration.
[-] Issue resolved: Sometimes BIND cannot be set when creating a domain .
[-] Issue resolved: Attempt to change IP address type from exclusive to shared is ended with error: withftpmng –change-vhost-ip failed.
[-] Issue resolved: Statistics for domain will not be calculated when “www” prefix for domain is enabled.
[-] Issue resolved: AWstat statistics for domain is not calculated for some days.
[-] Issue resolved: Only one last file are exists in log’s folder after log rotation.
[-] Issue resolved: SpamAssasin adds X-SpamAssassin headers to outgoing mail if spam checking is off.
[-] Issue resolved: Reconfigurator fails on “Repair Plesk Installation -> Plesk Server Accounts” on Windows 2008.
[-] Issue resolved: Notification of finished backup is sent several times.
[-] Issue resolved: New domain is moved to default Plesk IIS application pool instead of application pool of client.
[-] Issue resolved: Multiple Plesk XSS vulnerabilities have been fixed.
[-] Issue resolved: Horde XSS vulnerability has been fixed.
Parallels Plesk Panel 9.3.0.3 Security Update (Linux only)
We have published Security Update #3 for Parallels Plesk Panel 9.3.0 that fixes PHP fasCGI vulnerability:
[-] An unauthenticated remote attacker being able to compromise the system and gain control over it security issues were resolved.
Parallels Plesk Panel 9.5.2 is available for downloads and installation through Autoinstaller since 7th May.
Unix-specific change log:
1. [-] Migrating Java applications fails bug is fixed.
2. [-] In some cases after upgrade, the old version of Horde remains registered in Plesk when actually Horde was successfully upgraded bug is fixed.
3. [-] Impossible to change mail account password from Horde webmail interface bug is fixed.
4. [-] After upgrade, Horde stops accepting short usernames (without the “@doman” part) bug is fixed.
5. [-] After upgrade, Horde Kronolith calendar works with errors and fails to create events bug is fixed.
6. [-] After upgrade, mobile browsers return the Not Found error when trying to access Horde webmail bug is fixed.
7. [-] Browser returns error when trying to access an Address Book on Horde webmail after upgrade bug is fixed.
8. [-] When migrating to CentOS 5 under Parallels Virtuozzo Containers, Migration Manager returns “internal server error” upon migration of some mail accounts, while the accounts seem to be migrated properly bug is fixed.
9. [-] Migration Manager reports that dump validation failed due to invalid value of the “enabled” attribute of mail redirects for some mail accounts where mail redirection is set up but disabled bug is fixed.
10. [-] When upgrading from Plesk versions earlier than 8.6, serial number of DNS zone was set to “0” bug is fixed.
11. [-] After migration from Plesk versions earlier than 8.6, site applications are not shown in the Panel if the APS package release on target host differs from that on the source while the app version is the same bug is fixed.
12. [-] After upgrade, installation of site applications fails on domains where files/folders permissions were set to wrong values bug is fixed.
Windows-specific change log:
1. [-] On Windows Server 2008, PHP handler for a virtual directory is automatically set to CGI even if PHP is set to run as FastCGI module on the domain level bug is fixed.
2. [-] PHP handler is changed from FastCGI to CGI automatically upon any actions with Web Directories in Plesk bug is fixed.
3. [-] Migration Manager reports that dump validation failed due to invalid value of the “enabled” attribute of mail redirects for some mail accounts where mail redirection is set up but disabled bug is fixed.