Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Warning: Undefined array key "Description" in /var/www/www.linuxsecurity.com-443/html/lsadvisories/lsadvisories.php on line 220

Fedora 10: 2009-8538 Critical: WordPress-MU XSS Security Fixes

fedora
Calendar Grey August 15, 2009
Dist Fedora Esm H88
The latest release of wordpress-mu introduces critical backports addressing XSS vulnerabilities and various security flaws, bolstering overall safety.
Update spans MU-versions for the following security releases from upstream: https://wordpress.org/news/2009/08/2-8-4-security-release/ https://wordpress.org/news/2009/08/wordpress...

Summary

WordPress-MU is a derivative of the WordPress blogging codebase, to allow

one instance to serve multiple users.

Update Information:

Update spans MU-versions for the following security releases from upstream: https://wordpress.org/news/2009/08/2-8-4-security-release/ https://wordpress.org/news/2009/08/wordpress-2-8-3-security-release/ * Backport of XSS fixes from WordPress 2.8.2 * Backport of security fixes for admin.php?page= bugs (CVE-2009-2334) Backport of security fixes for admin.php?page= bugs (CVE-2009-2334) Backport of security fixes for admin.php?page= bugs (CVE-2009-2334)

Change Log

* Wed Aug 12 2009 Bret McMillan - 2.8.4a-1 - Update to version 2.8.4a for security fixes * Fri Jul 10 2009 Bret McMillan - 2.7-6 - Patch for CVE-2009-2334 - Update to version 2.7 - Alter source prep so I can still use upstream's tarball - favicon.ico removed from manifest * Tue Apr 7 2009 Bret McMillan - 2.6.5-2 - Patch for CVE-2009-1030 * Mon Dec 1 2008 Bret McMillan - 2.6.5-1 - Update to 2.6.5 - https://wordpress.org/news/2008/11/wordpress-265/ - https://odd.blog/2008/11/25/wordpress-mu-265/ - Fixes 1 XSS security issue, 3 bugs

References


[ 1 ] Bug #510745 - CVE-2009-2334, CVE-2009-2335, CVE-2009-2336 wordpress: multiple vulnerabilities https://bugzilla.redhat.com/show_bug.cgi?id=510745

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update wordpress-mu' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: wordpress-mu
Product: Fedora 10
Version: 2.8.4a
Release: 1.fc10
Summary: WordPress-MU multi-user blogging software

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here