Quick Login   
 
Register AdminFusion Tutorials Post Fusion Forum Matrix
 
Go Back AdminFusion » Software & Tech » Software » Other Software » [MyBB News] MyBB 1.4.5 Released - Maintenance & Security Release
Reply
 
LinkBack
Old 04-19-2009, 05:43 AM   #1
Forum Guru
 
Join Date: Sep 2005
Posts: 8,310
Industry News is on a distinguished road
Post [MyBB News] MyBB 1.4.5 Released - Maintenance & Security Release

MyBB 1.4.5 is now available on the MyBB website and is a general maintenance and security release.

This release fixes over 100 reported issues with version released since 1.4.4 causing some incorrect functionality of MyBB. These bugs have been fixed to provide a more stable version of MyBB for public use.

What's added/changed in this version?
  • One Low XSS Vulnerability fixed in the ACP - This is tagged as low because it requires administrator permissions. This vulnerability was discovered and reported by ketto93.
  • Several Low CSRF vulnerabilities fixed in the ACP - These are all low priority because they require extremely rare circumstances and cannot compromise any information. They are only useful in assisting a DDOS attack. These vulnerability were found and fixed internally.
  • A minor weakness in an algorithm we use for generating a post key was fixed - This is low priority because it requires extensive computing power to even be a problem. This weakness was discovered and reported by frostschutz.
  • Commas have not been allowed in usernames since MyBB 1.4. They are forcefully removed during the upgrade procedure for MyBB 1.4.5 to ensure compliance and to fix a reported issue. Please inform your users with commas in their usernames of this change.
  • Lots of speed and stability improvements previously affecting large forums.
  • ... Lots of other bug fixes
This release has been tested by our new Software Quality Assurance group and through a private beta test performed by members of the community. We thank you for making this a fine and stable release.

Information on upgrading, template changes and language changes can be found in the posts below.

Please note, that you need to run the upgrade script for this version.
This is so the templates may be updated.

There are database schema changes in this version.

Reporting MyBB security vulnerabilities
If you think you've found a vulnerability in MyBB, we advise you not to publicly post it on these forums or publicly release information about it elsewhere until we've had time to prepare and release a patch.

As always, you can send through security related messages on the MyBB website from the Contact Us page.

More...
Industry News is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

Similar Threads
Thread Thread Starter Forum Replies Last Post
[MyBB News] MyBB 1.4.4 Released - Maintenance & Security Release Industry News Other Software 0 11-27-2008 07:54 AM
[MyBB News] MyBB 1.2.14 Released - Security & Maintenance Release Industry News Other Software 0 07-18-2008 01:41 AM
[MyBB News] MyBB 1.2.14 Released - Security & Maintenance Release Industry News Other Software 0 07-17-2008 07:26 AM
[MyBB News] MyBB 1.2.12 Released - Security and Maintenance Release Industry News Other Software 2 01-25-2008 05:19 AM
[MyBB News] MyBB 1.2.8 Released - Security & Maintenance Release Industry News Other Software 0 06-29-2007 10:54 AM

AdminFusion

All times are GMT +1. The time now is 03:45 PM. Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

© 2009 AdminFusion | Advertising Opportunities | Legal | A member of the Crowdgather Forum Community
 
From:
Title:

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77