Follow

Security advisory regarding Prosody-Filer (XMPP server upload server):

github.com/ThomasLeister/proso

Please update to version 1.0.1 as son as possible!

Previous versions are affected by a bug that can lead to information leak and expose a list of previous uploaded files of any user.

@thomas
😲 Dann muss ich wohl was tun. 😉

@thomas
Reicht es die Binary prosody-filer auszutauschen oder muss die Config nochmal neu erstellt und bearbeitet werden?

@intux Es genügt, den Service zu stoppen, das Binary auszutauschen, und den Service wieder zu starten :)

@thomas Finde ich gut, dass du das so offen ansprichst. Sollten mehr Service-Provider so machen.

Sign in to participate in the conversation
\m/ Metalhead.club \m/

Metalhead.club is a Mastodon instance hosted in Germany and powered by 100% green energy.