Security Release - CB 1.0.1 - RELEASED!

17 years 9 months ago #18848 by dpk
Thanks Beat!

Please Log in to join the conversation.

17 years 9 months ago #18973 by beat
See front-page article update-errata...

Update: ERRATA: All sites should either update to CB 1.0.1 or correct a Joomla setting !

Just when you thought you were safe... A post less than an hour ago brought to our attention that Joomla 1.0.10 still emulates register_globals ON by default, even if php-setting register_globals is OFF. See the Joomla forum post by Adam (aka Websmurf) for instructions on how to turn it off. So: if you didn't or can't turn that off in that file, you should update Community Builder immediately to security release 1.0.1.


Post edited by: beat, at: 2006/08/17 01:42

Beat - Community Builder Team Member

Before posting on forums: Read FAQ thoroughly -- Help us spend more time coding by helping others in this forum, many thanks :)
CB links: Our membership - CBSubs - Templates - Hosting - Forge - Send me a Private Message (PM) only for private/confidential info

Please Log in to join the conversation.

17 years 9 months ago #19006 by beat

Beat - Community Builder Team Member

Before posting on forums: Read FAQ thoroughly -- Help us spend more time coding by helping others in this forum, many thanks :)
CB links: Our membership - CBSubs - Templates - Hosting - Forge - Send me a Private Message (PM) only for private/confidential info

Please Log in to join the conversation.

17 years 9 months ago #19024 by jazmac
Replied by jazmac on topic Re:Security Release - CB 1.0.1 - RELEASED!
Upgrade went smoothly. Thanks for all your hard work!

I read the posting re register_globals emulation mentioned above. I'd like to implement it, but my CB installs have a problem. I've completed the CB 1.0.1 upgrade (running J! 1.0.10 w/.htaccess set to RG=off). If I also change the setting in globals.php, on my user list the navigation stops working. Only the 1st page is displayed. The next, 1, 2, 3, etc, links only return the 1st page. Registration, login & all else is fine. It's just the user list. Has anyone else seen this? Any ideas on how to fix?

Please Log in to join the conversation.

17 years 9 months ago #19032 by crash777
Replied by crash777 on topic Re:Security Release - CB 1.0.1 - RELEASED!
I know this might be a bit offtopic.. does this Joomla setting have any adverse effects by itself or just with the unpatched version of CB?

Please Log in to join the conversation.

17 years 9 months ago #19033 by rswennen
Replied by rswennen on topic Re:Security Release - CB 1.0.1 - RELEASED!
Joomlaboard 1.1.2 is not working any more either with the RG_EMULATION setting changed in the globals.php

How did you fix that ? Joomlapolis is running JB 1.1.2

Please Log in to join the conversation.

Moderators: beatnantkrileon
Time to create page: 0.246 seconds

Facebook Twitter LinkedIn