LinuxQuestions.org

LinuxQuestions.org (/questions/)
-   LQ Suggestions & Feedback (http://www.linuxquestions.org/questions/lq-suggestions-and-feedback-7/)
-   -   Opensuse forums defaced running vbulletin 4.2.1, is LQ vbulletin 3.8.8 vulnerable ? (http://www.linuxquestions.org/questions/lq-suggestions-and-feedback-7/opensuse-forums-defaced-running-vbulletin-4-2-1-is-lq-vbulletin-3-8-8-vulnerable-4175490583/)

metaschima 01-08-2014 01:08 PM

Opensuse forums defaced running vbulletin 4.2.1, is LQ vbulletin 3.8.8 vulnerable ?
 
A cracker defaced the opensuse forums which are running vbulletin 4.2.1:
http://linux.slashdot.org/story/14/0...dresses-leaked

It appears that the fix is found only in vbulletin 5.0.5. So my question is, is LQ, running vbulletin 3.8.8 Beta 1 vulnerable ?

jeremy 01-08-2014 01:29 PM

We're running the latest version of the branch we're currently on, but as a 0day was used here there is no way to know for sure if LQ is vulnerable. As always, we'll continue to monitor the situation and will remain vigilant with updates.

--jeremy

John VV 01-08-2014 02:46 PM

Also the opensuse forum is under the control of Novel and NOT the opensuse community

so any decision was/is done by corporate and not the forum admins .

nonamedotc 01-08-2014 04:52 PM

I guess this is a question to Jeremy - Any plans of moving over to open source bulletin board solutions, like phpbb? Just curious! :)

jeremy 01-08-2014 05:37 PM

We have no specific plans to switch platforms at this time.

--jeremy


All times are GMT -5. The time now is 06:27 PM.