<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Knowledge Sharing &#187; Update</title>
	<atom:link href="http://blog.danigunawan.com/tag/update/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.danigunawan.com</link>
	<description>"Say it... although a word..."</description>
	<lastBuildDate>Wed, 25 Jan 2012 00:14:12 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Joomla 1.5.13 Security Release</title>
		<link>http://blog.danigunawan.com/cms-joomla/joomla-1-5-13-security-release/</link>
		<comments>http://blog.danigunawan.com/cms-joomla/joomla-1-5-13-security-release/#comments</comments>
		<pubDate>Fri, 24 Jul 2009 03:11:05 +0000</pubDate>
		<dc:creator>Dagu</dc:creator>
				<category><![CDATA[Joomla]]></category>
		<category><![CDATA[CMS]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Update]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://blog.danigunawan.com/?p=567</guid>
		<description><![CDATA[If you are a Joomla user, please upgrade your web immediately. From Joomla Official website: This is a security release and users are strongly encouraged to upgrade immediately. Joomla! Developer Vulnerability News [20090722] &#8211; Core &#8211; Missing JEXEC Check Posted: 22 Jul 2009 04:36 PM PDT Project: Joomla! SubProject: Framework Severity: Moderate Versions: 1.5.12 and [...]
Related posts:<ol>
<li><a href='http://blog.danigunawan.com/web/new-release-of-joomla-1-5-12/' rel='bookmark' title='New Release of Joomla 1.5.12'>New Release of Joomla 1.5.12</a></li>
<li><a href='http://blog.danigunawan.com/cms-joomla/improved-performance-on-the-release-of-joomla-25/' rel='bookmark' title='Improved Performance on the Release of Joomla 2.5'>Improved Performance on the Release of Joomla 2.5</a></li>
<li><a href='http://blog.danigunawan.com/cms/joomla-in-the-future/' rel='bookmark' title='Joomla in the Future'>Joomla in the Future</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>If you are a Joomla user, please upgrade your web immediately. From <a title="joomla 1.5.13" href="http://www.joomla.org/announcements/release-news/5243-joomla-1513-security-release-now-available.html" target="_blank">Joomla Official website</a>: <strong>This is a security release and users are strongly encouraged to upgrade immediately</strong><strong>.</strong></p>
<p><strong> </strong><strong>Joomla! Developer Vulnerability News<br />
</strong></p>
<p style="margin: 1em 0pt 3px;"><a style="font-family: Arial,Helvetica,sans-serif; font-size: 9px;" rel="nofollow" name="1" href="http://feedproxy.google.com/%7Er/JoomlaSecurityNews/%7E3/HiUGdggCF-M/302-20090722-core-missing-jexec-check.html" target="_blank"><span id="lw_1248351032_1">[20090722] &#8211; Core &#8211; Missing JEXEC Check</span></a></p>
<p style="margin: 9px 0pt 3px; color: #555555; font-family: Arial,Helvetica,sans-serif; line-height: 140%; font-size: 9px;"><span>Posted:</span> 22 Jul 2009 04:36 PM PDT</p>
<ul>
<li><strong>Project:</strong> Joomla!</li>
<li><strong>SubProject:</strong> Framework</li>
<li><strong>Severity: </strong>Moderate</li>
<li><strong>Versions:</strong> <span id="lw_1248351032_2" style="border-bottom: 1px dashed #0066cc; cursor: pointer;">1.5.12</span> and all previous 1.5 releases</li>
<li><strong>Exploit type:</strong> XSS</li>
<li><strong>Reported Date:</strong> 2009-July-21</li>
<li><strong>Fixed Date:</strong> 2009-July-22</li>
</ul>
<h3>Description</h3>
<p>Some files were missing the check for JEXEC.  These scripts will then expose internal path information of the host.</p>
<h3>Affected Installs</h3>
<p>All 1.5.x installs prior to and including 1.5.12 are affected.</p>
<h3>Solution</h3>
<p>Upgrade to latest Joomla! version (<span id="lw_1248351032_3" style="border-bottom: 1px dashed #0066cc; cursor: pointer;">1.5.13</span> or newer).</p>
<p>Reported by Juan Galiana Lara (Internet Security Auditors)</p>
<h3>Contact</h3>
<p>The JSST at the <a title="Contact the JSST" rel="nofollow" href="http://developer.joomla.org/security.html" target="_blank"><span id="lw_1248351032_4">Joomla! Security Center</span></a>.</p>
<p style="margin: 1em 0pt 3px;">
<p style="margin: 1em 0pt 3px;"><a style="font-family: Arial,Helvetica,sans-serif; font-size: 9px;" rel="nofollow" name="2" href="http://feedproxy.google.com/%7Er/JoomlaSecurityNews/%7E3/rhefmqvY3kw/301-20090722-core-file-upload.html" target="_blank"><span id="lw_1248351032_5">[20090722] &#8211; Core &#8211; File Upload</span></a></p>
<p style="margin: 9px 0pt 3px; color: #555555; font-family: Arial,Helvetica,sans-serif; line-height: 140%; font-size: 9px;"><span>Posted:</span> 22 Jul 2009 04:17 PM PDT</p>
<ul>
<li><strong>Project:</strong> Joomla!</li>
<li><strong>SubProject:</strong> TinyMCE editor</li>
<li><strong>Severity: </strong>Critical</li>
<li><strong>Versions:</strong> 1.5.12</li>
<li><strong>Exploit type:</strong> Image <span id="lw_1248351032_6" style="border-bottom: 1px dashed #0066cc; cursor: pointer;">File</span> upload</li>
<li><strong>Reported Date:</strong> 2009-July-22</li>
<li><strong>Fixed Date:</strong> 2009-July-22</li>
</ul>
<h3>Description</h3>
<p>Tiny browser included with TinyMCE 3.0 editor allowed files to be uploaded and removed without logging in.</p>
<h3>Affected Installs</h3>
<p>Version 1.5.12 only</p>
<h3>Solution</h3>
<p>Upgrade to latest Joomla! version (1.5.13 or newer).</p>
<p>Reported by Patrice Lazareff.</p>
<h3>Contact</h3>
<p>The JSST at the <a title="Contact the JSST" rel="nofollow" href="http://developer.joomla.org/security.html" target="_blank">Joomla! Security Center</a>.</p>
<h3>Download here</h3>
<p><a href="http://joomlacode.org/gf/download/frsrelease/10697/42195/Joomla_1.5.13-Stable-Full_Package.zip" target="_blank">Click here to download Joomla 1.5.13 (Full package)</a><br />
<a href="http://joomlacode.org/gf/project/joomla/frs/?action=FrsReleaseBrowse&amp;frs_package_id=4712" target="_blank">Click here to find an update package</a></p>
<p>Related posts:<ol>
<li><a href='http://blog.danigunawan.com/web/new-release-of-joomla-1-5-12/' rel='bookmark' title='New Release of Joomla 1.5.12'>New Release of Joomla 1.5.12</a></li>
<li><a href='http://blog.danigunawan.com/cms-joomla/improved-performance-on-the-release-of-joomla-25/' rel='bookmark' title='Improved Performance on the Release of Joomla 2.5'>Improved Performance on the Release of Joomla 2.5</a></li>
<li><a href='http://blog.danigunawan.com/cms/joomla-in-the-future/' rel='bookmark' title='Joomla in the Future'>Joomla in the Future</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://blog.danigunawan.com/cms-joomla/joomla-1-5-13-security-release/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>New Release of Joomla 1.5.12</title>
		<link>http://blog.danigunawan.com/web/new-release-of-joomla-1-5-12/</link>
		<comments>http://blog.danigunawan.com/web/new-release-of-joomla-1-5-12/#comments</comments>
		<pubDate>Fri, 03 Jul 2009 12:38:36 +0000</pubDate>
		<dc:creator>Dagu</dc:creator>
				<category><![CDATA[Joomla]]></category>
		<category><![CDATA[Web]]></category>
		<category><![CDATA[CMS]]></category>
		<category><![CDATA[Release]]></category>
		<category><![CDATA[Update]]></category>
		<category><![CDATA[Upgrade]]></category>

		<guid isPermaLink="false">http://blog.danigunawan.com/?p=561</guid>
		<description><![CDATA[From the Joomla Security newsletter, I know that there&#8217;s a new version of Joomla. But, my email provider sent it to spam folder. I just don&#8217;t know why.. huff.. :( From the official Joomla website: The Joomla Project is pleased to announce the immediate availability of Joomla 1.5.12 [Wojmamni Ama Woi]. This release contains a [...]
Related posts:<ol>
<li><a href='http://blog.danigunawan.com/cms-joomla/joomla-1-5-13-security-release/' rel='bookmark' title='Joomla 1.5.13 Security Release'>Joomla 1.5.13 Security Release</a></li>
<li><a href='http://blog.danigunawan.com/cms-joomla/improved-performance-on-the-release-of-joomla-25/' rel='bookmark' title='Improved Performance on the Release of Joomla 2.5'>Improved Performance on the Release of Joomla 2.5</a></li>
<li><a href='http://blog.danigunawan.com/cms/joomla-in-the-future/' rel='bookmark' title='Joomla in the Future'>Joomla in the Future</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>From the <strong>Joomla Security </strong>newsletter, I know that there&#8217;s a new version of Joomla. But, my email provider sent it to spam folder. I just don&#8217;t know why.. huff.. :(</p>
<p>From the official <a title="Joomla!" href="http://www.joomla.org" target="_blank">Joomla</a> website:</p>
<blockquote><p>The Joomla Project is pleased to announce the immediate availability of Joomla 1.5.12 [Wojmamni Ama Woi]. This release contains a number of bug fixes and three moderate-level security fixes. It has been less than a month since <a href="http://www.joomla.org/announcements/release-news/5235-joomla-1511-security-release-now-available.html" target="_blank">Joomla 1.5.11</a> was released on June 3, 2009.</p>
<p>This release marks an important milestone for the Joomla Project due to the upgrade of the PEAR library to the new BSD licensed version, which brings the codebase into full compliance with the GPL. In addition, this release contains an important upgrade to TinyMCE v 3.2.4.1.</p>
<p>The Production Working Group&#8217;s goal is to continue to provide regular, frequent updates to the Joomla community.</p></blockquote>
<p><a href="http://joomlacode.org/gf/download/frsrelease/10547/41305/Joomla_1.5.12-Stable-Full_Package.zip">Download Joomla 1.5.12 (Full package)</a><br />
<a href="http://joomlacode.org/gf/download/frsrelease/10548/41314/Joomla_1.5.11_to_1.5.12-Stable-Patch_Package.zip">Download Joomla 1.5.11 &gt; 1.5.12 update package</a><br />
<a href="http://joomlacode.org/gf/project/joomla/frs/?action=FrsReleaseView&amp;release_id=10548" target="_blank">All 1.5.12 Packages</a></p>
<p>Related posts:<ol>
<li><a href='http://blog.danigunawan.com/cms-joomla/joomla-1-5-13-security-release/' rel='bookmark' title='Joomla 1.5.13 Security Release'>Joomla 1.5.13 Security Release</a></li>
<li><a href='http://blog.danigunawan.com/cms-joomla/improved-performance-on-the-release-of-joomla-25/' rel='bookmark' title='Improved Performance on the Release of Joomla 2.5'>Improved Performance on the Release of Joomla 2.5</a></li>
<li><a href='http://blog.danigunawan.com/cms/joomla-in-the-future/' rel='bookmark' title='Joomla in the Future'>Joomla in the Future</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://blog.danigunawan.com/web/new-release-of-joomla-1-5-12/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

