concrete5 5.6.1.2 Released

concrete5 5.6.1.2 was released yesterday. The version includes bug fixes.

More information is available in the release notes.

Posted in concrete5 | Leave a comment

concrete5 5.6.1.1 Released

concrete5 5.6.1.1 was released yesterday. The version includes bug fixes.

More information is available in the release notes.

Posted in concrete5 | Leave a comment

Moodle 2.2.9, 2.3.6, and 2.4.3 Released

Moodle 2.2.9, 2.3.6, and 2.4.3 were released today. The new versions fix a serious regression that was introduced in the versions released last week.

More information is available in the release notes for 2.2.9, 2.3.6, and 2.4.3.

Posted in Moodle | Leave a comment

Moodle 2.2.8, 2.3.5, and 2.4.2 Released

Moodle 2.2.8, 2.3.5, and 2.4.2 were released yesterday. The new versions include “small improvements”, bug fixes, and security fixes. Details of the security vulnerabilities fixed will be released later.

Update (March 25, 2013): Moodle has now released information on the security issues fixed in the releases. Moodle 2.2.8 fixes four serious security vulnerabilities and four minor security vulnerabilities. Moodle 2.3.5 fixes four serious security vulnerabilities and four minor security vulnerabilities. Moodle 2.4.2 fixes four serious security vulnerabilities and five minor security vulnerabilities.

More information is available in the release notes for 2.2.8, 2.3.5, and 2.4.2.

Posted in Moodle, Security Update | Leave a comment

Piwik 1.11.1 Released

Piwik 1.11.1 was released yesterday. The new version includes a new config setting to allow “for greater accuracy of returning visitors” and encoding for .svg header.

More information is available in the release announcement.

Posted in Piwik | Leave a comment

Piwik 1.11 Released

Piwik 1.11 was released today. The new version includes several new map reports, a new tracking code generator, and more. The new version also fixes a cross-site scripting (XSS) vulnerability.

More information is available in the release announcement.

Posted in Piwik, Security Update | Leave a comment

TYPO3 4.5.25, 4.6.18, 4.7.10, 6.0.4 Released

TYPO3 4.5.25, 4.6.18, 4.7.10, and 6.0.4 were released today. The new versions fix a regression introduced in the versions released yesterday. Those versions, 4.5.24, 4.6.17, 4.7.9, and 6.0.3, fixed a critical SQL injection vulnerability in the Extbase Framework and a medium open redirection vulnerability in the access tracking mechanism.

More information is available in the release notes for 4.5.25, 4.6.18, 4.7.10, and 6.0.4.

Posted in Security Update, TYPO3 | Leave a comment

Drupal 7.21 Released

Drupal 7.21 was released today. The new version “includes fixes for incompatibilities introduced” in Drupal 7.20.

More information is available in the release notice.

Posted in Drupal | Leave a comment

MediaWiki 1.19.4 and 1.20.3 Released

MediaWiki 1.19.4 and 1.20.3 were released today. The new versions fix three security related vulnerabilities. The vulnerabilities could allow arbitrary files to be read when non-default settings are in place and allow sysops to view full user objects

More information is available in the release announcement for 1.19.4 and 1.20.3.

Posted in MediaWiki, Security Update | Leave a comment

Drupal 7.20 Released

Drupal 7.20 was released today. The new version fixes a security vulnerability that could allow on-demand generation of image derivatives to be abused to cause server disk space to fill up and cause a very high CPU load. The release notes for the new version detail important information to review before applying the update.

Posted in Drupal, Security Update | Leave a comment