Announcement

Collapse
No announcement yet.

vBulletin 5.6.1 Security Patch Level 1

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • vBulletin 5.6.1 Security Patch Level 1

    Installing the Patch
    1. Download the appropriate files for your version of vBulletin.
    2. Upload all files found within the zip file. Make sure to overwrite the existing files on your server.

    excuse my question, but should i do it like an upgrade ?

  • #2
    No. You just upload the patch files.

    More information here:
    https://forum.vbulletin.com/forum/vb...security-patch
    MARK.B | vBULLETIN SUPPORT

    TalkNewsUK - My vBulletin 5.6.2 Demo
    AdminAmmo - My Cloud Demo

    Comment


    • #3
      i was just running the upgrade process, because i found that zip file is like a new version file (there is upload and do_not_upload folders), so i couldn't understand what does it mean :
      Upload all files found within the zip file. Make sure to overwrite the existing files on your server.

      Comment


      • #4
        Originally posted by bendiesel View Post
        i was just running the upgrade process, because i found that zip file is like a new version file (there is upload and do_not_upload folders), so i couldn't understand what does it mean :
        The Security Patches are separate. Look on the left hand side in your Members Area for Patches/Security Patches

        Comment


        • #5
          You can upload all the files in the 5.6.1 Patch Level 1 full download. You do not need to run upgrade.php. That is only needed when there are database changes.
          Translations provided by Google.

          Wayne Luke
          The Rabid Badger - a vBulletin Cloud demonstration site.
          vBulletin 5 API - Full / Mobile
          Vote for your favorite feature requests and the bugs you want to see fixed.

          Comment


          • #6
            My site currently is at patch 5.5.4 Level 2. Can I just patch with the 5.5.6 Patch?
            Last edited by [email protected]; Thu 7 May '20, 4:07pm.

            Comment


            • #7
              Originally posted by [email protected] View Post
              My site currently is at patch 5.5.4 Level 2. Can I just patch with the 5.6.1 Patch or do I need to do the upgrade thing?
              You need to upgrade. The patch only works without the upgrade script if you're already running the same version as the patch, 5.6.1.

              Comment


              • #8
                Can I patch with the 5.5.6 patch?

                Comment


                • #9
                  Originally posted by [email protected] View Post
                  Can I patch with the 5.5.6 patch?
                  No you cannot. You need to upgrade. The patch will work for the version it is created for and only that version.
                  Translations provided by Google.

                  Wayne Luke
                  The Rabid Badger - a vBulletin Cloud demonstration site.
                  vBulletin 5 API - Full / Mobile
                  Vote for your favorite feature requests and the bugs you want to see fixed.

                  Comment


                  • #10
                    Can I upgrade directly to 5.6.1 from 5.5.4?

                    Comment


                    • #11
                      Have installed the patch but can't find a "readme" or similar to know what vulnerability it fixes or how to tell if we have already been "got".
                      Is there a description of the problem somewhere?

                      Comment


                      • #12
                        Originally posted by [email protected] View Post
                        Can I upgrade directly to 5.6.1 from 5.5.4?
                        Yes. Download the FULL 5.6.1 package from the members area (NOT just the separate patch files). Then unzip and unload this, and run the upgrade script.
                        Note that you should always back up database and files before running an upgrade.
                        MARK.B | vBULLETIN SUPPORT

                        TalkNewsUK - My vBulletin 5.6.2 Demo
                        AdminAmmo - My Cloud Demo

                        Comment


                        • #13
                          Originally posted by ayjayef View Post
                          Have installed the patch but can't find a "readme" or similar to know what vulnerability it fixes or how to tell if we have already been "got".
                          Is there a description of the problem somewhere?
                          This sort of information is not made public because doing so advertises how to exploit unpatched sites.
                          MARK.B | vBULLETIN SUPPORT

                          TalkNewsUK - My vBulletin 5.6.2 Demo
                          AdminAmmo - My Cloud Demo

                          Comment


                          • #14
                            Mark.B Sure, I have heard that logic before but the problem with it is "the bad guys" know and the "good guys don't". You end-up trolling sites you shouldn't be on to see what they are doing so you can see if you have been exploited.

                            Surely it could be in the members area or similar?

                            Comment


                            • #15
                              We provide the information that is authorized by our parent company's legal department. We are not allowed to disclose anything else.

                              With this security exploit, we do not believe it was in the wild before the patch was released.
                              Translations provided by Google.

                              Wayne Luke
                              The Rabid Badger - a vBulletin Cloud demonstration site.
                              vBulletin 5 API - Full / Mobile
                              Vote for your favorite feature requests and the bugs you want to see fixed.

                              Comment

                              Related Topics

                              Collapse

                              Working...
                              X