En

cPanel官网安全更新(2023-02-15)

来源:cPanel官网 发布日期:2023-02-15 阅读次数:506 评论:0

基本信息

发布日期:2023-02-15(官方当地时间)

更新类型:安全更新

更新版本:109.9999.107

感知时间:2023-03-03 10:50:11

风险等级:未知

情报贡献:TSRC

更新标题

Change Log for 109.9999.107

更新详情

Fixed case CPANEL-42420: Fix bug in horde export script when description fields for events contain excessive spaces to begin a line.Fixed case CPANEL-42450: Update cpanel-roundcubemail to 1.6.0.3-1.cp110.Fixed case EA-11258: Restore functionality of ModSecurity Tools Hits List when latest version of ea-apche24-mod_security2 is installed.Fixed case CPANEL-42441: Sign forwarded messages processed through SRS with DKIM.[security] Fixed case SEC-668: Strengthen filter which checks for invalid webmail forwarders.[security] Fixed case SEC-669: Escape the error message displayed by cpsrvd to prevent cross-site scripting.Fixed case CPANEL-41131: Cease asking for confirmation on saving of files in the ACE editor.Fixed case CPANEL-42372: Ignore deleted root forwarding addresses when migrating to Jupiter.Fixed case CPANEL-42373: Remove blank lines in an account's shadow file while suspending an account.Fixed case CPANEL-42387: Update cpanel-php81 to 8.1.16-1.cp110.Fixed case CPANEL-42410: Update cpanel-clamav to 0.104.4.2-3.cp108 (includes changes for CPANEL-40969).Fixed case CPANEL-42412: Enable Process Manager in WHM navigation menu.Fixed case CPANEL-42417: Revert "Update backups metadata code to avoid calling gzip directly".Fixed case ART-2476: IPv6 support for WHM API token authentication whitelist.Fixed case BOO-1923: Fixed an issue where some unicode inputs on the Edit Sql Configuration form would incorrectly be flagged as non-printable characters.Fixed case BOO-1952: Holding increment and decrement buttons on the Edit SQL Configuration page will now continuously adjust values.Fixed case BOO-1976: Updated the sql mode form field to a textarea for a better UX on the Edit SQL Configuration page.Fixed case BOO-1979: Fixed an issue where a user could save an empty change set when using Edit SQL Config interface.Fixed case BOO-2201: Improved UX by stabilizing the order in which form fields are displayed on the Edit SQL Configuration page.Fixed case BOO-2221: Improved UX when using the Edit SQL Configuration page and adjusting integer values.Fixed case BOO-2235: Update MySQL profile creation for local connections.Fixed case BOO-2260: Add a new Security Advisor check for EOL database versions.Fixed case BOO-2264: Make MariaDB 10.6 the recommended version for MariaDB upgrades.Fixed case BOO-2266: Fixed a page inconsistency in firefox on the Edit SQL Configuration page.Fixed case BOO-2272: Fixed mobile responsiveness on the Edit SQL Configuration page.Fixed case BWG-3516: Improve post_snapshot mmpass generation reliability.Fixed case BWG-3537: Add more DNSSEC algorithm and digest types for WHM DNS Zone Manager.Fixed case BWG-3590: Fix Apache and Dovecot service startup failure under some circumstances in the post_snapshot script.Fixed case BWG-3680: Prevent unexpected service restarts in snapshot_prep and post_snapshot.Fixed case BWG-3785: Update PowerDNS to 4.7.2.Fixed case COBRA-13810: Remove deprecated domains interfaces cruft files.Fixed case COBRA-13930: Create remote-storage APIs.Fixed case COBRA-14006: Create 'cluster setup steps' interface for cPanel Cloud Edition.Fixed case COBRA-14071: Permanently remove unauthenticated contact-email updates.Fixed case COBRA-14088: Add “WEB_REPLICAS” to account packages.Fixed case COBRA-14092: Add web-replicas to the Add/Edit Package UIs.Fixed case CPANEL-40392: Changed to also stop syslog.socket (Ubuntu only).Fixed case CPANEL-40434: Skip intermediate versions when installing or upgrading MariaDB.Fixed case CPANEL-40487: Updated tweak setting description for purging users' File Manager Trash.Fixed case CPANEL-41137: Update angular libaries.Fixed case CPANEL-41191: Ignore non-fatal "Tried to add None" yum error when running find_outdated_services during upcp.Fixed case CPANEL-41380: Specify Passphrase: explictly to gpg.Fixed case CPANEL-41407: Don't display disk usage percentage when quota is unlimited for email users.Fixed case CPANEL-41440: Ensure “Add or Remove Recognized IP Addresses” interface under “WHM > Security Questions“ is able to sort both IPv4 and IPv6 addresses.Fixed case CPANEL-41487: Update cpanel-geoipfree-data to version 110.0.Fixed case CPANEL-41489: Fix visual anomalies in ClamAV and Munin plugin icons.Fixed case CPANEL-41539: Update mysql community repo packages.Fixed case CPANEL-41555: Avoid warnings from bin/set_hostname.Fixed case CPANEL-41685: Use python2 from cpanel-system-python27.Fixed case CPANEL-41732: Add and start using EA is_installed helper.Fixed case CPANEL-41741: Update cpanel-unbound to version 1.17.0.Fixed case CPANEL-41782: MySQL transfers: send periodic WS pongs to preserve TCP stream.Fixed case CPANEL-41788: Disable RPM::Versions hooks during first installation.Fixed case CPANEL-41792: Use the table cpanel for all nft rules injected by cPanel.Fixed case CPANEL-41819: Fix UI bug checkbox placement.Fixed case CPANEL-41823: Remove further cruft from subdomain and alias domain interfaces and update links in email accounts interface.Fixed case CPANEL-41824: Fix bug preventing WPT API calls with token auth.Fixed case CPANEL-41850: Restore implicit submit in WHM's account creation form.Fixed case CPANEL-41868: Ensure WHM header loads when server hostname is not a FQDN.Fixed case CPANEL-41872: Prepare “scripts/fixquotas” for AlmaLinux 9 support.Fixed case CPANEL-41943: Update cpanel-exim to 4.96-8.cp108.Fixed case CPANEL-41951: Fix bug in SecurityAdvisor where it would incorrectly warn about LiteSpeed issues when LiteSpeed was not even installed.Fixed case CPANEL-41958: Fixed unintended behaviour when using long press feature to increment or decrement values on the edit sql configuration page.Fixed case CPANEL-41963: No longer require postgresql 9.6 to install CCS server.Fixed case CPANEL-42056: Fixed host DKIM setup during install; error messages about refresh_dkim_validity_cache having invalid arguments no longer appear in the log after installation.Fixed case CPANEL-42119: Fix alignment of “phantom” clickable elements in modifyacct.Fixed case CPANEL-42151: Allow email accounts to be specified with the generate_mobileconfig WHMAPI call.Fixed case CPANEL-42153: Fix modifyacct when renaming without the upgrade-account ACL.Fixed case CPANEL-42163: Tolerate “missing” checkboxes in createacct.js.Fixed case CPANEL-42178: Use distro openssl on CL8.Fixed case CPANEL-42241: Update cpanel-roundcubemail to 1.6.0.2-2.cp110.Fixed case CPANEL-42269: Update cpanel-git to 2.38.3-1.cp108.Fixed case CPANEL-42276: Fix alignment of assorted dropdown menus.Fixed case CPANEL-42294: Fix footer on package deletion page in WHM.Fixed case CPANEL-42329: Ensure DNSSEC key backups work with incremental backups enabled.Fixed case CPANEL-42334: Fixed a spacing issue occurring in Exim's Basic Editor after clicking save.Fixed case CPANEL-42338: Ensure external and relative URLs work for WHM notifications.Fixed case CPANEL-42362: Prevent ELevate upgrade message from displaying on CloudLinux 7.Fixed case CPANEL-42380: Allow installation of “cpanel-dpkg” development package.Fixed case CPANEL-42385: Update cpanel-phpmyadmin to 5.2.1-1.cp110.Fixed case CPANEL-42393: Correct update blocker error handling related to nodes.Fixed case DUCK-7609: Call has_feature() to check if license has Team Manager feature enabled.Fixed case HB-6622: Horde calendar events aren't migrated to Roundcube on upgrade.Fixed case HB-6642: Fix bug in RoundCube schema updates.Fixed case PH-17296: Remove API used only by Paper Lantern theme.Fixed case PH-17544: Remove Paper Lantern support from locale generation.Fixed case PH-17594: Remove references of styled from cPanel & WHM.Fixed case PH-18817: Update transfer tool to validate theme setting.Fixed case PH-18929: Remove uses of DEFWEBMAILTHEME.Fixed case PH-18950: Deprecate the UAPI Themes::get_theme_base function.Fixed case PH-19002: Remove Paper Lantern from cPanel and WHM.Fixed case PH-19037: Update angular workspaces with latest versions of the dependencies.Fixed case PH-19039: Ensure the user and package migrations runs during upcp to v110.Fixed case PH-19053: Remove references of Paper Lantern.Fixed case PH-19117: remove brand and style routing from cpanel.Fixed case PH-19279: Fix an uninitialized value message from lt command.Fixed case PH-19345: Create Account default limit bug.Implemented case CPANEL-42288: Notify administrators who may need to change custom Exim configurations in order to continue to support SRS.

软件描述

cPanel 是一套在网页寄存业中最享负盛名的商业软件,是基于于 Linux 和 BSD 系统及以 PHP 开发且性质为闭源软件;提供了足够强大和相当完整的主机管理功能,诸如:Webmail 及多种电邮协议、网页化 FTP 管理、SSH 连线、数据库管理系统、DNS 管理等远端网页式主机管理软件功能。

CVE编号

TSRC分析

暂无

业界资讯

暂无

评论

提交评论 您输入的评论有误,请重新输入