Snort 2.9.5.5 pkg v3.0.1 Update – Minor bug fixes
-
Bills pull request has still not been accepted. The change you saw was this: https://github.com/pfsense/pfsense-packages/commit/048bb82a0e2c814da90816657ecedf59fedf8dbd
-
Bills pull request has still not been accepted. The change you saw was this: https://github.com/pfsense/pfsense-packages/commit/048bb82a0e2c814da90816657ecedf59fedf8dbd
Thanks for the update fragged. I thought that security issue on the Web GUI was fixed in the previous release?
It still shows as 3.0.2 after this update.
-
@BBcan17:
Bills pull request has still not been accepted. The change you saw was this: https://github.com/pfsense/pfsense-packages/commit/048bb82a0e2c814da90816657ecedf59fedf8dbd
Thanks for the update fragged. I thought that security issue on the Web GUI was fixed in the previous release?
It still shows as 3.0.2 after this update.
I'm not an expert with html/php, but it seems like this is a better fix for the same issue that was already fixed by Ermal before.
-
ermal merged 21 commits into pfsense:master from bmeeks8:master about 4 hours ago
Looks like the new changes have been merged, but due to the changes done by Ermal and rbgarga (?) it looks like the package binary version is now incorrect on the System - Packages page. It's something that bill can easily fix though. I'm sure he will post a new thread with the changes and info about the new package version.
-
@BBcan17:
Bills pull request has still not been accepted. The change you saw was this: https://github.com/pfsense/pfsense-packages/commit/048bb82a0e2c814da90816657ecedf59fedf8dbd
Thanks for the update fragged. I thought that security issue on the Web GUI was fixed in the previous release?
It still shows as 3.0.2 after this update.
I'm not an expert with html/php, but it seems like this is a better fix for the same issue that was already fixed by Ermal before.
Yes, this latest fix is an improvement over the first one. Some more changes similar to this will be coming in the next Snort update to further harden the GUI code a bit. It contains a lot of quite old HTML/PHP stuff that I had just left alone since it worked. However, in today's more security conscious environment, some hardening is needed.
Bill