Server Software Update Notification: 04-09-2008
Important updates in this Notification:
- CPX for Linux, v3, and v2
- Enhanced Webmail for Linux, v3, and v2
- Urchin 5 for Linux, v3, and v2
- WordPress for Linux, v3, and v2
- Reseller Business Tools for Linux
- ClamAV for Linux, v3, and v2
- cURL for v3
- GPG for v3
- PHP 4.x for v2
The following updates (or “dist”) will be completed 4/9/2008 on all servers:
Linux MPS/VPS:
- CPX
- The CPX: Control Panel server management Web interface will be updated to version 1.5.9. This version addresses several outstanding issues, including the following:
- Problems with case insensitivity.
- Software firewall status displayed incorrectly.
- Better configuration for the genericstable email configuration file.
- Better vadduser correlation.
- Quota computation and display.
- Improve validation of UTF-8 character encoding.
The Apache Web server will be restarted as part of this update. No action needed.
- Enhanced Webmail (beta)
Note: This is a beta release and at this time the software should not be used for mission-critical projects. At this time Enhanced Webmail is only provided in English.
A vinstall for Enhanced Webmail will be added to the system. This new Webmail provides email administration, calendar, and contact functionality from within a Web browser. To install Enhanced Webmail, connect to your server through SSH and execute the following from the command prompt:
# vinstall enhancedwebmail
- mod_ruby
- A vinstall for the mod_ruby Apache module will be added to the system. More information about mod_ruby can be found here:
http://www.modruby.net/en/
To install mod_ruby, connect to your server through SSH and execute the following from the command prompt:
# vinstall mod_ruby
- Urchin 5
- Urchin Web Analytics version 5 and its vinstall will be updated to address a cross site scripting vulnerability, discussed here:
http://www.google.com/support/urchin45/bin/answer.py?answer=76399&topic=7395
No action needed.
- ClamAV
- The vinstall for ClamAV, a GPL virus scanner, will be updated to better configure log file names and default email folders as well as address issues with the milter. The vuninstall will be updated to address issues with the milter. This update affects the vinstall and vuninstall only. No action needed.
- vaddhost
- The proprietary vaddhost command-line utility will be update to address issues with ownership and permissions of subhosts. This update affects vaddhost only. No action needed.
- WordPress
- The vinstall for the WordPress blogging utility will be updated to correctly interpret special characters and improve the --status option. This update affects the vinstall only. No action needed.
- sinfo
- The sinfo command-line utility will be updated to add more options. No action needed.
- Reseller Business Tools
- The Reseller Business Tools product add-on will be updated to address issues when adding to existing accounts. This update affects the installation only. No action needed.
FreeBSD MPS/VPS v3
- CPX
- The CPX: Control Panel server management Web interface will be updated to version 1.5.9. This version addresses several outstanding issues, including the following:
- Problems with case insensitivity.
- Software firewall status displayed incorrectly.
- Better configuration for the genericstable email configuration file.
- Better vadduser correlation.
- Quota computation and display.
- Improve validation of UTF-8 character encoding.
The Apache Web server will be restarted as part of this update. No action needed.
- Enhanced Webmail (beta)
Note: This is a beta release and at this time the software should not be used for mission-critical projects. At this time Enhanced Webmail is only provided in English.
A vinstall for Enhanced Webmail will be added to the system. This new Webmail provides email administration, calendar, and contact functionality from within a Web browser. To install Enhanced Webmail, connect to your server through SSH and execute the following from the command prompt:
# vinstall enhancedwebmail
- SquirrelMail
- The vinstall for the SquirrelMail Webmail package will be updated to improve help documentation. This update affects the vinstall only. No action needed.
- sinfo
- The sinfo command-line utility will be updated to add more options. No action needed.
- Urchin 5
- Urchin Web Analytics version 5 and its vinstall will be updated to address a cross site scripting vulnerability, discussed here:
http://www.google.com/support/urchin45/bin/answer.py?answer=76399&topic=7395
No action needed.
- ClamAV
- The vinstall for ClamAV, a GPL virus scanner, will be updated to install version 0.92.1_1. This version addresses issues with installation and FreeBSD 5.x. More information about version 0.92.1_1 can be found here:
http://www.freshports.org/commit.php?category=security&port=clamav ...
The ClamAV daemon will be restarted as part of this update. No action needed for existing installations. To install ClamAV, connect to your server through SSH and execute the following from the command prompt:
# vinstall clamav
The vinstall will also be updated to better configure log file names and default email folders. This update affects the vinstall only. No action needed.
- WordPress
- The vinstall for the WordPress blogging utility will be updated to correctly interpret special characters and improve the --status option. This update affects the vinstall only. No action needed.
- Portupgrade
- The Portupgrade FreeBSD ports/packages administration management tool suite will be updated to version 2.4.3_2,2. This version brings the suite to the most current FreeBSD version and address issues with dependencies. More information about version 2.4.3_2,2 can be found here:
http://www.freshports.org/commit.php?category=ports-mgmt&port=portupgrade ...
The Index-6.db file used by Portupgrade will also be updated to reflect current packages and dependencies. Some package and port timestamps will also be updated. No action needed.
- KornShell
- The KornShell (ksh) command and programming language will be updated to version 20080202. This version brings the utility to the most current FreeBSD version. More information about version 20080202 can be found here:
http://www.freshports.org/commit.php?category=shells&port=ksh93 ...
No action needed.
- GSSAPI
- The Generic Security Services Application Program Interface Perl module will be updated to version 0.26. This version brings the module to the most current version and addresses issues with installation. More information about version 0.26 can be found here:
http://search.cpan.org/src/AGROLMS/GSSAPI-0.26/Changes
No action needed.
- Mime-support
- The mime-support MIME type package will be updated to version 3.40.1.1. This version brings the package to the most current FreeBSD version. More information about version 3.40.1.1 can be found here:
http://packages.debian.org/changelogs/pool/main/m/mime-support/current/changelog
No action needed.
- Socket6
- The Socket6 Perl module will be updated to version 0.20. This version brings the module to the most current version. More information about version 0.20 can be found here:
http://search.cpan.org/src/UMEMOTO/Socket6-0.20/ChangeLog
No action needed.
- PathTools
- The PathTools file specifications module will be updated to version 3.2701. This version brings the utility to the most current version. More information about version 3.2701 can be found here:
http://search.cpan.org/src/KWILLIAMS/PathTools-3.2701/Changes
No action needed.
- Test::Harness
- The Test::Harness Perl module will be updated to version 3.10. This version brings the module to the most current version and addresses issues with warnings. More information about version 3.10 can be found here:
http://search.cpan.org/src/ANDYA/Test-Harness-3.10/Changes
No action needed.
- OpenLDAP Client
- The OpenLDAP client will be updated to version 2.3.41. This version brings the utility to the most current FreeBSD version and addresses issues with race conditions, refreshes, cache, and several other issues. More information about version 2.3.41 can be found here:
http://www.openldap.org/lists/openldap-announce/200802/msg00000.html
No action needed.
- Test::Simple
- The Test::Simple Perl module will be updated to version 0.78. This version updates the module. More information about version 0.78 can be found here:
http://search.cpan.org/src/MSCHWERN/Test-Simple-0.78/Changes
No action needed.
- cURL
- The cURL file transfer utility will be updated to version 7.16.3_1. This version brings the utility to the most current FreeBSD version. More information about version 7.16.3_1 can be found here:
http://www.freshports.org/commit.php?category=ftp&port=curl ...
No action needed.
- IO::Socket::INET6
- The IO::Socket::INET6 Perl module will be updated to version 2.52. This updates the module. More information about version 2.52 can be found here:
http://search.cpan.org/~shlomif/IO-Socket-INET6-2.52/ChangeLog
No action needed.
- Lynx
- The Lynx command-line textual Web browser will be update to version 2.8.7d8. This version brings the utility to the most current FreeBSD version. More information about version 2.8.7d8 can be found here:
http://www.freshports.org/commit.php?category=www&port=lynx-current ...
No action needed.
- HTML-Parser
- The HTML-Parser module collection will be updated to version 3.56_1. This version brings the utility to the most current FreeBSD version and addresses issues with dependencies. More information about version 3.56_1 can be found here:
http://www.freshports.org/commit.php?category=www&port=p5-HTML-Parser ...
No action needed.
- IO::Zlib
- The IO::Zlib Perl module will be updated to version 1.09. This version brings the module to the most current version and addresses issues with installation. More information about version 1.09 can be found here:
http://search.cpan.org/src/TOMHUGHES/IO-Zlib-1.09/ChangeLog
No action needed.
- Archive::Tar
- The Archive::Tar Perl module will be updated to version 1.38_1. This version brings the module to the most current FreeBSD version. More information about version 1.38_1 can be found here:
http://www.freshports.org/commit.php?category=archivers&port=p5-Archive-Tar ...
No action needed.
- libgpg-error
- The libgpg-error library will be updated to version 1.6. This version brings the utility to the most current FreeBSD version. More information about version 1.6 can be found here:
http://www.freshports.org/commit.php?category=security&port=libgpg-error ...
No action needed.
- Libgcrypt
- The Libgcrypt cryptographic library will be updated to version 1.4.0. This version brings the utility to the most current FreeBSD version. More information about version 1.4.0 can be found here:
http://www.freshports.org/commit.php?category=security&port=libgcrypt ...
http://www.freshports.org/commit.php?category=security&port=libgcrypt ...
No action needed.
- mutt next generation
- The mutt next generation command-line email client will be updated to version 20061125_3. This version brings the utility to the most current FreeBSD version. More information about version 20061125_3 can be found here:
http://www.freshports.org/commit.php?category=mail&port=mutt-ng ...
No action needed.
- GnuTLS
- The GnuTLS (GNU Transport Layer Security) library will be updated to version 2.2.2. This version brings the utility to the most current FreeBSD version. More information about version 2.2.2 can be found here:
http://www.freshports.org/commit.php?category=security&port=gnutls ...
No action needed.
- LibXSLT
- The LibXSLT C parser library for XML will be updated to version 1.1.22_1. This version brings the library to the most current FreeBSD version and address issues with the Libgcrypt cryptographic library. More information about LibXSLT version 1.1.22_1 can be found here:
http://www.freshports.org/commit.php?category=textproc&port=libxslt ...
No action needed.
- Mail::Tools
- The Mail::Tools mail application Perl module set will be updated to version 2.02. This version brings the set to the most current version. More information about version 2.02 can be found here:
http://search.cpan.org/src/MARKOV/MailTools-2.02/ChangeLog
No action needed.
- Dirmngr
- The Dirmngr certificate management client will be updated to version 1.0.1_1. This version brings the utility to the most current FreeBSD version. More information about version 1.0.1_1 can be found here:
http://www.freshports.org/commit.php?category=security&port=dirmngr ...
http://www.freshports.org/commit.php?category=security&port=dirmngr ...
No action needed.
- GPG
- GPG (GNU Privacy Guard or GnuPG) will be updated to version 2.0.4_1. This version address issues with the Libgcrypt cryptographic library. More information about version 2.0.4_1 can be found here:
http://www.freshports.org/commit.php?category=security&port=gnupg ...
No action needed.
- lftp
- The lftp file transfer program will be updated to version 3.6.3_1. This version brings the utility to the most current FreeBSD version. More information about version 3.6.3_1 can be found here:
http://www.freshports.org/commit.php?category=ftp&port=lftp ...
No action needed.
- Webmin
- The vinstall for the Webmin Web-based interface for system administration for UNIX will be updated to improve installation syntax. This update affects the vinstall only. No action needed.
- Pinentry-Curses
- The curses-based pinentry entry dialogue utility will be updated to version 0.7.3_1. This version brings the utility to the most current FreeBSD version. More information about version 0.7.3_1 of the full pinentry package can be found here:
http://www.freshports.org/commit.php?category=security&port=pinentry ...
http://www.freshports.org/commit.php?category=security&port=pinentry ...
No action needed.
- Mail::SPF
- The Mail::SPF Sender Policy Framework Perl module will be updated to version 2.005. This brings the module to the most current version. More information about version 2.005 can be found here:
http://search.cpan.org/src/JMEHNLE/Mail-SPF-v2.005/CHANGES
No action needed.
- Netpbm
- The Netpbm graphics software package will be updated to version 10.26.50. This version updates the utility. More information about version 10.26.50 can be found here:
http://www.freshports.org/commit.php?category=graphics&port=netpbm ...
No action needed.
FreeBSD MPS/VPS v2
- CPX
- The CPX: Control Panel server management Web interface will be updated to version 1.5.9. This version addresses several outstanding issues, including the following:
- Problems with case insensitivity.
- Better configuration for the genericstable email configuration file.
- Better vadduser correlation.
- Quota computation and display.
- Improve validation of UTF-8 character encoding.
The Apache Web server will be restarted as part of this update. No action needed.
- Enhanced Webmail (beta)
Note: This is a beta release and at this time the software should not be used for mission-critical projects. At this time Enhanced Webmail is only provided in English.
A vinstall for Enhanced Webmail will be added to the system. This new Webmail provides email administration, calendar, and contact functionality from within a Web browser. To install Enhanced Webmail, connect to your server through SSH and execute the following from the command prompt:
# vinstall enhancedwebmail
- PHP 4.x
- The vinstall for the PHP: Hypertext Preprocessor scripting language for version 4.x will be updated to install version 4.4.8. This version brings the software to the most current 4.x version and addresses several issues, including security issues. This is the last planned release for the PHP 4.4.x series. More information about version 4.4.8 can be found at these pages:
http://us2.php.net/releases/4_4_8.php
http://www.php.net/ChangeLog-4.php#4.4.8
It is strongly recommended to update any existing installations of PHP 4.x. To update existing installations to the new, connect to your server through SSH and execute the following command from the prompt:
# vinstall php4
- ClamAV
- The vinstall for ClamAV, a GPL virus scanner, will be updated to address problems with automatic update emails, which may be bouncing. For existing installations experiencing problems with bounced administrative emails, update your installation by connecting to your server through SSH and executing the following from the command prompt:
# vinstall clamav
The vinstall will also be updated to better configure log file names and default email folders. This update affects the vinstall only. No action needed.
- WordPress
- The vinstall for the WordPress blogging utility will be updated to install version 2.3.3. Version 2.3.3 addresses several security issues and other bugs. More information about version 2.3.3 can be found here:
http://wordpress.org/development/2008/02/wordpress-233/
To update existing installations, make a backup of all files and databases, then connect to your through SSH and execute the following from the command prompt:
# vinstall wordpress --update
To obtain a full list of command-line options, connect to your server through SSH and execute the following from the command prompt:
# vinstall wordpress --help
This update affects the vinstall only. If you do not wish to change or configure your WordPress installation, no action needed.
- Urchin 5
- Urchin Web Analytics version 5 and its vinstall will be updated to address a cross site scripting vulnerability, discussed here:
http://www.google.com/support/urchin45/bin/answer.py?answer=76399&topic=7395
No action needed.
- Zend Optimizer
- The vuninstall for the Zend Optimizer PHP enhancement utility will be updated to remove the “camelcase” (ZendOptimizer) iteration. To remove Zend Optimizer, use all lowercase, as in this example:
# vuninstall zendoptimizer
This update affects the vuninstall only. No action needed.
Signature
All updates listed below are classified as “No Action Needed.”
- FormMail Character Set
- Updated default charset for FormMail to default at UTF-8. UTF-8 is more common than the previous default character set, making FormMail easier to use.
- Photo Gallery
- Updated the Photo Gallery so that it will surface an error message if there are pictures already in the directory that will contain the images associated with this feature.
- Help System
- Updated the help system with minor changes for style, grammar, and to reflect GUI alterations.
Note: This
notification could include technical inaccuracies or typographical errors. Changes can be made to the information herein;
these changes will be distributed in new notifications. AlpineWeb might make improvements and/or changes in the product(s)
and/or the program(s) described in this publication at any time.
|
|