Maston Update auf v4.3.6 erledigt.
#security #mastodon #admin #securityfix #update
Maston Update auf v4.3.6 erledigt.
#security #mastodon #admin #securityfix #update
Samsung Galaxy S24 users in Europe, don’t miss the crucial February 2025 update! Key security fixes, performance improvements, Samsung-specific tweaks await. Ensure phone stays secure and smooth with just a quick update. #SamsungUpdate #GalaxyS24 #TechNews #SecurityFix
Mastodon benötigt ein Security-Update: **This release is an important security release fixing several security issue.**
sudo su mastodon
cd /home/mastodon/live
git fetch --tags
git checkout v4.2.10
bundle install
yarn install --frozen-lockfile
RAILS_ENV=production bundle exec rails assets:precompile
exit
sudo systemctl restart mastodon-sidekiq
sudo systemctl reload mastodon-web
sudo systemctl restart mastodon-streaming
Google is addressing a critical issue in Chrome for Android by modifying the Password Manager to prevent accidental deletions of saved passwords.
Mise à jour de https://mastodon.underworld.fr en v4.2.7 #mastodon #Securityfix
Der letzte Fix ist noch warm, da wird bereits der nächste nachgereicht.
**This release is an important security release fixing a major security issue.**
Folgende Schritte haben den Kuschelmammut von 4.2.6 auf 4.2.7 gehievt:
sudo su mastodon
cd /home/mastodon/live
git fetch --tags
git checkout v4.2.7
bundle install
yarn install --frozen-lockfile
RAILS_ENV=production bundle exec rails assets:precompile
exit
sudo systemctl restart mastodon-sidekiq
sudo systemctl reload mastodon-web
sudo systemctl restart mastodon-streaming
Wegen des MAJOR security issue sollte man das Update ziemlich dringend einspielen, denke ich.
⚠️ IMPORTANT SECURITY UPDATE ⚠️
Release 4.7.6 + 4.7.7
More security fixes.
Changes:
- Security improvements
- Fixed bug preventing users from saving emails addresses or phone numbers
- Fixed profile picture export and import when exporting account
- Fixed bug that was causing duplicated profile pictures
- Now disallowing importing handle from exported profile
- Fixed syntax errors in Vietnamese translation
Full changelog: https://github.com/LinkStackOrg/LinkStack/releases/tag/v4.7.6
Mastodon benötigt (schon wieder) ein Security-Update: **This release is an important security release fixing several security issue.**
Das Update von 4.2.5. auf 4.2.6. ist ziemlich trivial.
sudo su mastodon
cd /home/mastodon/live
git fetch --tags
git checkout v4.2.6
bundle install
yarn install --frozen-lockfile
RAILS_ENV=production bundle exec rails assets:precompile
exit
sudo systemctl restart mastodon-sidekiq
sudo systemctl reload mastodon-web
sudo systemctl restart mastodon-streaming
⚠️ IMPORTANT SECURITY UPDATE ⚠️
Release 4.7.5
We found another exploit, please update IMMEDIATELY.
Changes:
- Fixed JS Code Injection exploit
- Fixed Bluesky icon XML style information error #717
- Now resetting click count to zero when importing links
Full changelog: https://github.com/LinkStackOrg/LinkStack/releases/tag/v4.7.5
Gaymer.Social has been updated to fix the security issue in v4.3.0-alpha.0 to v4.3.0-alpha.1
(Based on v4.2.5 security fix, thanks to Glitch-Soc for speedy update)
#mastodonupdate #mastodon #security #securitybug #securityfix
Aus aktuellem Anlass: https://www.heise.de/news/Mastodon-Diebstahl-beliebiger-Identitaeten-im-foederierten-Kurznachrichtendienst-9615961.html
JEDER der eine Mastodon-Instanz betreibt sollte DRINGEND das aktuelle Update einspielen! JEDER!! JETZT!
Wer es aktuell nicht kann: Server runterfahren! Alles andere ist grob fahrlässig!
Heute muss ein dringendes Mastodon-Sicherheits-Update eingespielt werden.
Mastodon selbst meint dazu: **This release is an important security release fixing a critical security issue (CVE-2024-23832).**
Die Schritte sind einfach:
sudo su mastodon
cd /home/mastodon/live
git fetch --tags
git checkout v4.2.5
bundle install
yarn install --frozen-lockfile
RAILS_ENV=production bundle exec rails assets:precompile
exit
sudo systemctl restart mastodon-sidekiq
sudo systemctl reload mastodon-web
sudo systemctl restart mastodon-streaming
Danach meldet die Oberfläche das Update auf 4.2.5.
Achtung: Ich bin von 4.2.4 auf die neue Version gegangen. Ggf. muss man, wenn man von einer früheren Version installiert, andere Schritte vornehmen!
Vielen Dank an Hagen (@hbauer@caserio.de) für die Info zum Update.
Mise à jour de https://mastodon.underworld.fr en v4.2.5 #mastodon #Securityfix
Wow!
Mastodon 4.2.5 GO! Podman, with Quadlet made it even EASIER than it was when I was just doing straight Podman with kubelet.
Update version numbers in my def, systemctl restart mastodon-pod, boom. updated.
#mastoadmin #mastodon #securityfix #podman #quadlet #containers
Firefox fixes a flurry of flaws in the first of two releases this month - No zero-days, but some interesting patches with their very own "teachable moments". https://nakedsecurity.sophos.com/2023/08/01/firefox-fixes-a-flurry-of-flaws-in-the-first-of-two-releases-this-month/ #vulnerability #securityfix #firefox #mozilla
⚠️ IMPORTANT SECURITY FIX ⚠️
Release 4.2.3
This update fixes a JS exploit using SVGs and removes metadata from images for improved privacy.
Please also boost this to spread awareness! :boost_requested:
Changes:
- Fixed JS exploit using SVG
- Now sanitizing EXIF and metadata
- Now allowing multiple file types as profile picture
- Added new error messages
- New translation: Brazilian Portuguese 🇧🇷
Full changelog: https://github.com/LinkStackOrg/LinkStack/releases/tag/v4.2.3
⚠️ IMPORTANT SECURITY FIX ⚠️
Release 4.1.2
Prior to this version it was possible to execute malicious JavaScript code on LinkStack instances. PLEASE UPDATE IMMEDIATELY! ⚠️
Please also boost this to spread awareness! :boost_requested:
Changes:
- Fixed JavaScript injection exploit
- Fixed adding custom link favicon causing error 500
Full changelog: https://github.com/LinkStackOrg/LinkStack/releases/tag/v4.1.2
Heute zwischen 15 und 17 Uhr (13:00 UTC and 15:00 UTC) wird ein Security-Update für #Mastodon veröffentlicht. Alle #MastoAdmin|s sollten ihre Instanzen sofort aktualisieren. 🔥
A security update for #Mastodon will be released today between 3 and 5 p.m. (13:00 UTC and 15:00 UTC) All #MastoAdmin|s should update their instances immediately. 🔥
Mise à jour de https://matrix.underworld.fr en v1.80.0
Mise à jour de https://element.underworld.fr en v1.11.26
https://github.com/vector-im/element-web/releases/tag/v1.11.26
Angular security fix concerning bindings of iframe elements is about to be released (breaking change): https://github.com/angular/angular/pull/48029
See also the corresponding error page in the Angular docs: https://angular.io/errors/NG0910