From dirk at haun-online.de Tue Sep 2 15:09:21 2008 From: dirk at haun-online.de (Dirk Haun) Date: Tue, 2 Sep 2008 21:09:21 +0200 Subject: [geeklog-announce] Unsolicited file uploads through FCKeditor Message-ID: <20080902190921.1429886149@smtp.haun-online.de> A user by the name of t0pP8uZz has demonstrated that FCKeditor's file upload can also be used to upload files directly, bypassing Geeklog's restrictions. Fortunately, these uploads are still restricted by FCKeditor's whitelist, so you can not upload scripts. This issue still has the potential for malicious use, though. For details and fixes, please see http://www.geeklog.net/article.php/file-uploads -- http://www.geeklog.net/ http://geeklog.info/ From dirk at haun-online.de Sun Sep 7 15:16:52 2008 From: dirk at haun-online.de (Dirk Haun) Date: Sun, 7 Sep 2008 21:16:52 +0200 Subject: [geeklog-announce] Geeklog 1.5.1rc1 Message-ID: <20080907191652.905018375@smtp.haun-online.de> The first release candidate for Geeklog 1.5.1 is now available for download: http://www.geeklog.net/article.php/geeklog-1.5.1rc1 This is mostly a bugfix update for Geeklog 1.5.0, but we've also added a few minor new features. -- http://www.geeklog.net/ http://geeklog.info/ From dirk at haun-online.de Mon Sep 22 15:17:55 2008 From: dirk at haun-online.de (Dirk Haun) Date: Mon, 22 Sep 2008 21:17:55 +0200 Subject: [geeklog-announce] Geeklog 1.5.1 Message-ID: <20080922191755.12275438@smtp.haun-online.de> The Geeklog team would like to announce that a new version, Geeklog 1.5.1, is now available for download: http://www.geeklog.net/article.php/geeklog-1.5.1 Geeklog 1.5.1 is mostly a bugfix update for Geeklog 1.5.0 and a recommended upgrade for users of Geeklog 1.5.0. There are also some security issues that we are addressing with this release: http://www.geeklog.net/article.php/geeklog-1.5.1-security -- http://www.geeklog.net/ http://geeklog.info/