Forum: FusionForge 4.8.2 released

Posted by: Roland Mas
Date: 2009-12-03 13:22
Summary: FusionForge 4.8.2 released
Project: FusionForge


* Maintenance release, security and bugfixes.

Users of previous versions of FusionForge are highly encouraged to upgrade, as 4.8.2 fixes a variety of bugs. This includes two security-related bugs, identified by CVE-2009-3303 (cross-site scripting vulnerability) and CVE-2009-3304 (symlink attack).

Updated packages for Debian Etch (GForge 4.5) and Lenny (GForge/FusionForge 4.7) are on their way to the usual security mirrors, and the fixes have also been committed to the various branches in Subversion, for users of hand-rolled instances.
Monitor Forum | Start New Thread Start New Thread