Would I lie to you?
Apr. 13th, 2008 09:20 pm"Don't ever give the monkey what he wants, and don't respond to nutcases."
I'm at home with sinuses blocked to pain while arkady, Freda and
redcountess go down the pub for
mirrorshard's birthday. Bah! I think I've run out of intarwebs.
reddragdiva.co.uk and arkady.org.uk got hit by the SQL injection vulnerability in Coppermine. I cleared the toxic waste iframes out of every single PHP and HTML file (and the database login of "cialis") and deleted 97,000 spam comments by hand in MySQL (commenting to be re-enabled only with working captchas) and have resubmitted the site to StopBadware. The Firefox 3 badware warning page is fabulously obnoxious. If you're running Coppermine, UPGRADE NOW.
(To check if your Coppermine gallery's fallen victim: view source, and if there's an iframe at the beginning with a ton of cryptic encoded crap, then your site may infect any IE user happening to look at it. You can check for sure by looking at the source PHP files and seeing if they have iframe code for cryptic encoded crap at the end. If they do, (1) remove the iframes from all PHP and HTML files in your Coppermine installation — and it will be all of them — (2) install either the patch linked above or all of 1.4.17 right away.)
We now have stair gates on the kitchen and hall doors (fitted courtesy Arkady's overpowering manliness), so the lounge is a big playpen for Freda. She bangs her spoon on the bars.
Update: 1.4.17 had a hole as well - get 1.4.18 right away.