Member Log In
Site Navigation
Latest Modifications
- [vB 3.8.4] THX - Hack for VB. 3.8.4
By: bluedog - [vB 3.8.4] Cyb - Chatbox V.2.3
By: bluedog - [vB 4.0.x] PHPKD - Advanced Quick...
By: PHPKD - [vB 3.6.x] StopSpam
By: flappi282 - [vB 3.8.x] vBulletin Chat Addon for...
By: 123flashchat
Latest Template Mods
- [vB 4.0.x] Remove My Profile Link...
By: Ak Worm - [vB 3.8.x] Images DownloadBox...
By: cRs!MP - [vB 3.8.x] Adviertise Mod On Forum...
By: MG4 - [vB 3.8.4] Images PassWordBox...
By: cRs!MP - [vB 3.8.4] Footer Follow Ups
By: Ak Worm
Latest Styles
- [vB 4.0.x] 4.0.3 - VB4STYLE-TWEETA...
By: Belon - [vB 4.0.x] [4.0.3] vbdesigns.de...
By: Belon - [vB 3.8.4] CompletevB - Skylight
By: DreadKnight - [vB 3.8.3] [vB 3.8.4] Barcelona...
By: hoiquantinhoc.com - [vB 3.8.3] Natures Walk by vBSkin...
By: Chri5
Latest Graphics
- [vB ] [anim.]Team Ranks
By: cRs!MP - [vB ] Abstract Circles (3...
By: cRs!MP - [vB ] PlayStation Rank Images
By: cRs!MP - [vB 3.6.12] Heavy Stroked Button...
By: Shelley - [vB ] Minature Ranks.
By: Shelley
![]() |
| | #1 |
| |
Status: Offline From Vbulletin.com vBulletin 3.6.5 This morning, an exploit was reported, which affects vBulletin versions 3.5.x and 3.6.x. Although the report is inaccurate and the published exploit does not work as claimed unless a highly unlikely set of circumstances exist, it has highlighted a potential security issue in these vBulletin versions. Therefore, we have decided to release updated versions, these being vBulletin 3.5.8 and 3.6.5. We recommend that all customers running vBulletin 3.5.x or 3.6.x upgrade to the appropriate version or apply the supplied patch as soon as possible. It is worth noting that in order to exploit the problem highlighted by the report, the attacking user must satisfy the following conditions:
Bugs Fixed in vBulletin 3.6.5 The Security Flaw The reported security flaw described in this announcement, which could potentially allow a SELECT query to be hijacked, has been addressed.Safari Cookies A problem where users of the Apple browser Safari would be logged off the system prematurely when vBulletin runs on specific servers has been resolved.Internet Explorer 7 Compatability Much has been said about Microsoft's decision to make the Javascript prompt() function throw a security warning whenever it is called. This change resulted in vBulletin's text editor system throwing security warnings whenever a user tried to insert an image or an email link. The use of prompt() for Internet Explorer 7 users has now been discontinued in favour of an alternative method of collecting user input.Fix for Infractions Bug A problem where infraction expiration was not cleaned-up properly has been addressed.Workaround for a FreeBSD Regular Expression Error on Login Some users running recent versions of PHP running on FreeBSD have encountered a bug in the regular expression engine that caused an error to be shown when logging in. We have worked around this problem. However, it may still appear in other areas, so we are trying to find a proper fix for the issue.Updating your vBulletin to Fix the Potential Exploit There are two ways in which you can fix the potential exploit in your version of vBulletin:
A Note Regarding vBulletin 3.6.6 The publication of this exploit has required a swift release of an updated version to fix the published problem. The original intention for vBulletin 3.6.5 had been to include a number of other bug fixes and improvements that have been reported since 3.6.4. Unfortunately, the necessity of bringing out a version quickly to fix the exploit has meant that many of these fixes have not had sufficient time to be fully tested to the extent that we would like and have therefore been kept back for vBulletin 3.6.6. We understand that this may be frustrating to our customers, and in order to minimize the inconvenience, we have ensured that this vBulletin 3.6.5 release contains no template or phrase changes, which will hopefully make upgrading as painless as possible. |
|
| | #2 |
| |
Status: Offline Interesting. I'm upgrading my boards now. |
|
| | #3 | |||||||||
Location: Anaheim Age: 22 ![]() |
Status: Offline Already upgraded my development board now off to do it on my car one :D Support will only be offered through forums Michael Biddle / vBHackers.comvBSEO 3.3.0 Gold Released with New "Virtual HTML Display" Feature Available for download now vBSEO Google Sitemap Generator - Version 2.5 Released Crawlability Network: vBulletin SEO | vBulletin Hackers | |||||||||
|
| | #4 |
| vB Newbie |
Status: Offline Thank You! I m go to upgrade... |
|
| | #5 | ||||||||
| Banned
![]() |
Status: Offline thanks. hey if i upgrade do i have to re apply all the hacks and whatnot ? | ||||||||
|
| | #6 |
| |
Status: Offline if your going from 3.6.4 to .5 then there are no changes to the templates. Just a few files. aka; All your templates and hacks should work and stay the same. |
|
| | #7 |
| vB Newbie |
Status: Offline I do not download 3.6.5 - Errors, 90%.... ??? 10 attempts... Support - sleep? |
|
| | #8 | |||||||||
Location: Anaheim Age: 22 ![]() |
Status: Offline what...? what do u mean? it went pretty clean for me, had one error, but i just deleted that row in database Support will only be offered through forums Michael Biddle / vBHackers.comvBSEO 3.3.0 Gold Released with New "Virtual HTML Display" Feature Available for download now vBSEO Google Sitemap Generator - Version 2.5 Released Crawlability Network: vBulletin SEO | vBulletin Hackers | |||||||||
|
| | #9 |
| |
Status: Offline I'll just patch until the real update occurs ![]() no reason to do full upgrades when another release will likely be soon. -Bs |
|
| | #10 |
| |
Status: Offline errrr, I hate upgrades! :( |
|
![]() |
vbulletin ![]() |
| Thread Tools | |
| |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| vBulletin 3.6.4 Released | Mikeyodesigns | Announcements | 3 | 11-28-2006 06:09 AM |
| vBulletin 3.6.0 Gold Released | Rex | Announcements | 11 | 10-18-2006 09:18 PM |
| vBulletin 3.6 Release Candidate 1 Released | Ken Iovino | Announcements | 3 | 07-11-2006 08:32 PM |
| vBulletin 3.6 Beta 3 Released | Ken Iovino | Announcements | 9 | 06-24-2006 08:58 PM |
| vBulletin 3.0.2 Released | Ryan Ashbrook | Announcements | 8 | 07-06-2004 03:51 PM |
All times are GMT. The time now is 06:26 AM.
Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.



































