MastodonEngineering,
@MastodonEngineering@mastodon.social avatar

We just released critical security patches for versions 4.1, 4.2, nightly, and the already discontinued 3.5 and 4.0.

If you are using nightly, you can upgrade to the 4.3.0-nightly.2024-02-02-security tag to get the patch.

Please upgrade as soon as possible!

Whiskeyomega,
@Whiskeyomega@cupoftea.social avatar
Slash909uk,
@Slash909uk@mastodon.me.uk avatar
Floppy,
@Floppy@mastodon.me.uk avatar

@Slash909uk already done! Our hosts @beasts are really good at staying on top of that stuff! ❤️

beasts,

@Floppy @Slash909uk thanks. We practice the upgrades too, our test instance is upgraded first, then our company instance, then we start rolling out to all the managed customer instances. We'd very much like to add more managed customer instances and let then transfer their maintenance burden to us,

Floppy,
@Floppy@mastodon.me.uk avatar

@beasts I always recommend you wherever I can :)

drmotte,
@drmotte@mastodon.social avatar

@MastodonEngineering what about iOS AppStore?

barubary,

@drmotte apps are not affected, this is only for server administrators

adamantichrist,

@MastodonEngineering great when are you going to provide help to users who have technical problems? Not much point using an app where I can only post text and there's no way of finding a solution

rolle,
@rolle@mementomori.social avatar

@MastodonEngineering No such tag 4.3.0-nightly.2024-02-02-security found though. Isn't today 1st of February as in 2024-02-01? That 02 is in the future.

I guess it's sufficient just to upgrade to the latest main that has alpha.1, right?

james,
@james@adney.land avatar

@rolle @MastodonEngineering

I think that’s just the docker image (https://github.com/mastodon/mastodon/pkgs/container/mastodon/173740102?tag=nightly.2024-02-02-security).

But the alpha.1 tag does include the fix.

rolle,
@rolle@mementomori.social avatar

@james Thanks for the clarification. @MastodonEngineering

nen,
@nen@mementomori.social avatar
rolle,
@rolle@mementomori.social avatar

@nen Tiedän, saan tästä reaaliajassa ilmoituksen sekä UI:ssa että sähköpostitse. En vain ole arkisin 9-19 päivittämässä, kun niin kiinni töissä. Pian päivitän.

@MastodonEngineering

nen,
@nen@mementomori.social avatar

@rolle Aa, hyvä. Ajattelin vain varalta pingata, ettei ole vahingossa mennyt ohi, koska en löytänyt sulta mitään mainintoja tai buustauksia viime päiviltä. Meinasin jo eilen tehdä sen kun törmäsin tuohon.

rolle,
@rolle@mementomori.social avatar

@nen Olen aika heikosti arkisin "ihmisten aikoihin" somessa. Rajoittuu tähän 20-01 välille yleensä. Viikonloppuna sitten tietysti enemmän myös jo aamusta, kun ei ole asiakkaat ja työntekijät hönkimässä niskaan. :blob_smile_sweat:

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • ethstaker
  • DreamBathrooms
  • GTA5RPClips
  • magazineikmin
  • InstantRegret
  • cubers
  • thenastyranch
  • Youngstown
  • rosin
  • slotface
  • osvaldo12
  • ngwrru68w68
  • kavyap
  • everett
  • megavids
  • Durango
  • normalnudes
  • Leos
  • mdbf
  • khanakhh
  • tester
  • modclub
  • cisconetworking
  • anitta
  • tacticalgear
  • provamag3
  • JUstTest
  • lostlight
  • All magazines