phpBB 2.0.16

Website announcements.

Moderator: Moderators

phpBB 2.0.16

Postby PostBot on Mon Jun 27, 2005 7:16 pm

phpBB Groups has announced release of phpBB 2.0.16

Release includes few bug fixes, including one serious security issue.

To fix security issue open viewtopic.php, find this:
Code: Select all
$message = str_replace('\"', '"', substr(@preg_replace('#(\>(((?>([^><]+|(?R)))*)\<))#se', "@preg_replace('#\b(" . str_replace('\\', '\\\\', $highlight_match) . ")\b#i', '<span style=\"color:#" . $theme['fontcolor3'] . "\"><b>\\\\1</b></span>', '\\0')", '>' . $message . '<'), 1, -1));
and replace with this:
Code: Select all
$message = str_replace('\"', '"', substr(@preg_replace('#(\>(((?>([^><]+|(?R)))*)\<))#se', "@preg_replace('#\b(" . str_replace('\\', '\\\\', addslashes($highlight_match)) . ")\b#i', '<span style=\"color:#" . $theme['fontcolor3'] . "\"><b>\\\\1</b></span>', '\\0')", '>' . $message . '<'), 1, -1));
All other changes are not required, but it would be better to apply whole patch.

Full list of changes is available here: http://www.opentools.de/files/phpbb_2015_to_2016.zip

There are no changes in templates, so all styles for phpBB 2.0.15 work perfectly with 2.0.16
Do NOT pm me, I don't visit this forum anymore, don't own it, don't provide any support and don't moderate.
User avatar
PostBot
Moderator
Moderator
 
Posts: 10659
Joined: Sat Aug 02, 2003 3:52 pm
Location: Mars

Return to Announcements

Who is online

Users browsing this forum: No registered users and 1 guest