Stephen Sekula (steve@chirp.cooleysekula.net)'s status on Thursday, 30-Oct-2014 22:40:57 UTC
-
Stephen Sekula (steve@chirp.cooleysekula.net)'s status on Thursday, 30-Oct-2014 22:40:57 UTC Stephen Sekula From diasporahq@joindiaspora.com on Diaspora: ### [ANNOUNCEMENT] diaspora* security release 0.4.1.2 We just released diaspora* version 0.4.1.2 which fixes [CVE-2014-7818](https://groups.google.com/forum/#!topic/rubyonrails-security/dCp7duBiQgo) by updating Rails to 3.2.20. Note that our recommended setup with a static files serving reverse proxy in place is not vulnerable to this issue. We recommend #podmins to update nonetheless. Please refer to the CVE for further details. Update instructions can be found as usual [in the wiki](https://wiki.diasporafoundation.org/Updating). #diaspora #podmin