natalian archives 2007 01 17

Working on Wordpress

3 comments

Stacked Thinkpads

I am keeping a close eye on the Wordpress 2.0.7 release.

I am being cautious because:

  1. no pings on their post. bit odd!
  2. The mentioned vulnerability does not apply to Debian’s PHP
  3. The diff between 2.0.6 and 2.0.7 has some considerable changes to the Akismet plugin which is not mentioned on the changelog/post
  4. I would like to improve the Debian copyright file, though I would like to hear back from upstream first
  5. There seems to be another minor security bug which I don’t think 2.0.7 addresses

I am also keeping an eye on Wordpress MU edition, to see how they handle these bugs, which has been version 1.0 for sometime.

Update: Ryan informs me there will be a 2.0.8 fixing the last reported security bug.

Comments

81.10.118.133

Hi,

There are no pingbacks because their server doesn’t currently accept any for that post :)
Just upgrade and use the old Akismet file.

Comment by Computer Guru

203.109.154.193

FYI,
The 2.0.7 release does fix the security bug you posted above :)
(http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=407289)

Cheers, and nice Thinkpad Stack!

Comment by mike

87.112.82.86

Hi Mike,

I am contact with Ryan Boren and he says it isn’t. Also if you look at the bug report #407289, it does mention the affected parts of Wordpress. Diffing 2.0.6 and 2.0.7 shows that area isn’t corrected.

Thinkpads rule! Well, with Lenovo and their hard drives being rubbish. Sorta. :)

Comment by hendry

Add a comment

Tags: