• Register
    • Help

    striker  0 Items
    Currently Supporting
    • Home
    • News
      • VaultWiki News
      • Visit the Wiki
    • Forum
    • Wiki
    • Support
    • What's New?
    • Buy Now
    • Manual
    • 
    • Home
    • VaultWiki Security Update: October 2017

    1. Welcome to VaultWiki.org, home of the wiki add-on for vBulletin and XenForo!

      VaultWiki allows your existing forum users to collaborate on creating and managing a site's content pages. VaultWiki is a fully-featured and fully-supported wiki solution for vBulletin and XenForo.

      The VaultWiki Team encourages you to join our community of forum administrators and check out VaultWiki for yourself.

    • VaultWiki Security Update: October 2017

      by
      pegasus
      • View Profile
      • View Forum Posts
      • View Blog Entries
      • Visit Homepage
      • View Articles
      Published on October 17, 2017 11:40 AM
      0 Comments Comments
      As of October 15, the regularly scheduled security patches for October are now available.

      Issue List

      VWE-2017-4131 is a Denial of Service amplification issue which might be triggered in the processing of some JPEG files. The issue affects the September 2017 patches.

      VWE-2017-4138 is a CAN-SPAM Compliance issue, involving a potential conflict with third-party XenForo add-ons, in which add-ons that provide email templates without defining plain-text variants might be sent with blank body contents. The issue affects the September 2017 patches; however, add-ons that were affected by this issue should still be updated to include plain-text variants in order to ensure maximum compatibility with clients.

      VWE-2017-4152 is a CAN-SPAM Compliance issue, in which the unsubscribe links in some wiki email notifications are not routed correctly. The issue affects some emails sent by VaultWiki 4.0.16 and higher.

      VWE-2017-4153 is a CAN-SPAM Compliance issue, in which subscriptions with corrupt compliance information may generate emails anyway. The issue affects corrupt data in all versions of the VaultWiki 4.x series.

      Patches

      The following patches, issued October 15, 2017, address the aforementioned issues:
      • 4.0.19 Patch Level 3
      • 4.0.18 Patch Level 4
      • 4.0.17 Patch Level 6
      • 4.0.16 Patch Level 7
      • 4.0.15 Patch Level 11


      We highly recommend that all users running VaultWiki 4.x in a production environment update to a patched release.
    • Contact Us
    • License Agreement
    • Privacy
    • Terms
    • Top
    All times are GMT -4. The time now is 6:36 AM.
    This site uses cookies to help personalize content, to tailor your experience, and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Learn more… Accept Remind me later
  • striker
    Powered by vBulletin® Version 4.2.5 Beta 2
    Copyright © 2025 vBulletin Solutions Inc. All rights reserved.
    Search Engine Optimisation provided by DragonByte SEO (Pro) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.
    Copyright © 2008 - 2024 VaultWiki Team, Cracked Egg Studios, LLC.