Movable Type Vulnerability

A new version of Movable Type has been released to fix a vulnerability that allowed attackers to send mail via your machine. You can get the upgrade here and the changelog is here.

Annoyingly this does not fix the known problem with email notifications not working so this is the 2nd release from Movable Type that has this bug and requires you to fiddle the source to fix it. You can read this forum posting for details of fixing the email bug.

Leave a comment

Recent Entries

  • flashpolicyd 2.0

    I wrote a multi threaded server for Adobe Flash Policy requests, some background from Adobe:Since policy files were first introduced, Flash Player has recognized /crossdomain.xml...

  • Adventures with Ruby

    Some more about my continuing experiences with ruby, in my last post I saidthe language does what you'd expect and as you'll see in my...

  • New programming language of choice - Ruby

    I have fallen out of love with Perl some time ago, I cannot point to one specific thing about it that put me off, I...

  • On working from home

    I've not been posting much here, work has been incredibly manic the last while, especially I need to still finish off my SSO posts with...

  • Rework of puppet facts for /etc/facts.txt

    Previously I blogged a custom fact that reads /etc/facts.txt to build up some custom facts for use in Puppet manifests, well I've since learned a...

Close