Upgraded to phpBB version 3.2.4 today; report problems here

Grumpy Old Guy
Posts: 2054
Joined: Sun Oct 11, 2015 10:24 am
Occupation: Retired, unemployed, never a lawyer

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#26

Post by Grumpy Old Guy » Sun Nov 18, 2018 3:42 pm

On a serious note, it works fine on my iPad, (iOS 12.1), Android phone (6.01) and desktop (Windows 10).

User avatar
Addie
Posts: 33826
Joined: Mon Jun 15, 2009 6:22 am
Location: downstairs

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#27

Post by Addie » Sun Nov 18, 2018 3:54 pm

Working fine on my Notebook using Linux.

User avatar
Orlylicious
Posts: 9671
Joined: Mon Apr 23, 2012 4:02 pm
Location: With Pete Buttigieg and the other "open and defiant homosexuals" --Bryan Fischer AFA
Occupation: "Scalawag...Part of an extreme, malicious leftist internet social mob working in concert with weaponized, socialized governments to target and injure political opponents.” -- Walt Fitzpatrick

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#28

Post by Orlylicious » Mon Nov 19, 2018 12:17 am

When I try to post, the error message I'm getting is, "Throw open the switches on the sonic oscillator... and step the reactor power input THREE MORE POINTS!" And then it flashes, "Oh, Rocky!". What should I do?


Avatar Photo: Rusty, the All American Squirrel, was given Karl P. Koenigs' gun. Rusty: "Sucks to be you, Karl."
Don't miss Fogbow's favorite show, "Mama June: From Not To Hot: "The Road To Intervention"

User avatar
Notorial Dissent
Posts: 12495
Joined: Thu Oct 17, 2013 8:21 pm

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#29

Post by Notorial Dissent » Mon Nov 19, 2018 1:10 am

Get ready to do the Time Warp again!!!????
The fact that you sincerely and wholeheartedly believe that the “Law of Gravity” is unconstitutional and a violation of your sovereign rights, does not absolve you of adherence to it.

User avatar
ZekeB
Posts: 15911
Joined: Mon Oct 12, 2009 10:07 pm
Location: Northwest part of Semi Blue State

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#30

Post by ZekeB » Mon Nov 19, 2018 5:24 am

Prey tell what is New© and Improved™ so that I can pik nits with the improvements?
Trump: Er hat eine größere Ente als ich.

Putin: Du bist kleiner als ich.

User avatar
RTH10260
Posts: 21742
Joined: Tue Mar 02, 2010 8:52 am
Location: Near the Swiss Alps

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#31

Post by RTH10260 » Mon Nov 19, 2018 5:34 am

ZekeB wrote:
Mon Nov 19, 2018 5:24 am
Prey tell what is New© and Improved™ so that I can pik nits with the improvements?
phpBB 3.2.4 Release - Please Update
Post by Marc » Fri Nov 16, 2018 7:58 pm

Greetings everyone,

We are pleased to announce the release of phpBB 3.2.4 "Bertie's ‘stache". This version is a maintenance and security release of the 3.2.x branch which fixes one security issue and various issues reported in previous versions.

The security issue was discovered with a new exploitation technique called Phar deserialization. An attacker with control over a founder admin account could escalate to remote code execution by abusing PHP’s default unserialization of metadata in Phar files. More information about this technique can be found here.
In order to fix this issue we’ve removed the ability to define absolute paths in the Admin Control Panel. This resulted in the removal of setting the ImageMagick path, so make sure to have the GD image library available instead. A new event to generate thumbnails was added as replacement, so you’re able to write an extension that uses a different image library to generate thumbnails. We would like to thank Simon Scannell and Robin Peraglie of RIPS Technologies for their report and responsible disclosure. The issue has been assigned CVE-2018-19274.

The fixed issues include, among others, compatibility issues with PHP 7.2 and issues with removing users from the newly registered user group more than once.
Among the notable changes are the addition of the list-unsubscribe header to emails sent by phpBB and the ability to reset your password without entering the username.

The full list of changes is available in the changelog file within the docs folder contained in the release package. You can find the key highlights of this release on the wiki at https://wiki.phpbb.com/Release_Highlights/3.2.4 and a list of all issues fixed on our tracker at https://tracker.phpbb.com/issues/?filter=14790


https://www.phpbb.com/community/viewtop ... &t=2492206

User avatar
Northland10
Posts: 8342
Joined: Sat Jan 23, 2010 9:19 am
Location: Chicago area - North burbs

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#32

Post by Northland10 » Mon Nov 19, 2018 7:31 am

The security issue was discovered with a new exploitation technique called Phar deserialization. An attacker with control over a founder admin account could escalate to remote code execution by abusing PHP’s default unserialization of metadata in Phar files.
Not enough coffee, yet. I thought I was still in the Anna Von Strudel topic.
North-land: of the family 10

UCC 1-106 Plural is Singular, Singular is Plural.

User avatar
RTH10260
Posts: 21742
Joined: Tue Mar 02, 2010 8:52 am
Location: Near the Swiss Alps

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#33

Post by RTH10260 » Mon Nov 19, 2018 8:24 am

Northland10 wrote:
Mon Nov 19, 2018 7:31 am
The security issue was discovered with a new exploitation technique called Phar deserialization. An attacker with control over a founder admin account could escalate to remote code execution by abusing PHP’s default unserialization of metadata in Phar files.
Not enough coffee, yet. I thought I was still in the Anna Von Strudel topic.
I recommend you stay with warm apple strudel with a dollop of vanilla icecream for your coffee. I did a coarse reading on this cause it was new to me, and it goes deep into the intricacies of the PHP runtime behaviour, also too was a need to access the ImageMagick image processing package (thru regular functionality, no exploit there). The recommendation was already given earlier to use a different image processing library.

User avatar
Tiredretiredlawyer
Posts: 9064
Joined: Tue May 10, 2016 2:56 pm
Location: Animal Planet
Occupation: Permanent probationary slave to 1 dog, 1 cat, and 1 horse, 4 granddogs, and one grandcat.

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#34

Post by Tiredretiredlawyer » Mon Nov 19, 2018 9:54 am

My Kindle Fire says the new, secure, tho sarcastic system is working well. Thanks, Fogmeister!
Q: Why did the Rooster do the Time Warp?
A 19th Amendment Centennial Moment: African-American Naomi Anderson was a leader in the suffrage movement in the west, a published poet, barber, community activist, and teacher.

User avatar
RoadScholar
Posts: 8028
Joined: Wed Jan 26, 2011 10:25 am
Location: Baltimore
Occupation: Historic Restoration Woodworker
Contact:

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#35

Post by RoadScholar » Mon Nov 19, 2018 10:00 am

A: To get to the Other Side!
The bitterest truth is healthier than the sweetest lie.
X3

User avatar
Tiredretiredlawyer
Posts: 9064
Joined: Tue May 10, 2016 2:56 pm
Location: Animal Planet
Occupation: Permanent probationary slave to 1 dog, 1 cat, and 1 horse, 4 granddogs, and one grandcat.

Re: Upgraded to phpBB version 3.2.4 today; report problems here

#36

Post by Tiredretiredlawyer » Mon Nov 19, 2018 10:02 am

:rotflmao:
A 19th Amendment Centennial Moment: African-American Naomi Anderson was a leader in the suffrage movement in the west, a published poet, barber, community activist, and teacher.

Post Reply

Return to “Announcements”