Another security upgrade: Lifetype 1.0.6 released
4. Jul. 2006The development team was notified of another SQL injection issue that was left without a fix after 1.0.5 was released, so we tried to promptly fix it and make a new release. Hopefully upgrading to this release will not cause much trouble, as only a few files are affected. Please read on for more information on how to upgrade.
As with any release, packages are available in .ZIP, .TAR.GZ and .TAR.BZ2 format from Sourceforge.net:
lifetype-1.0.6.zip
lifetype-1.0.6.tar.gz
lifetype-1.0.6.tar.bz2
Please keep in mind that is not necessary to run wizard.php if you are upgrading from any 1.0.x version to 1.0.6, as there are no changes in the database schema. Simply upload the files and overwrite all older files except the configuration files under the config/ folder.
Additionally, we have "update only" packages from LifeType 1.0.5 to 1.0.6, which only include new or modified files. These packages can not be used to upgrade from 1.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4 but only from 1.0.5 to 1.0.6. There is no need to run wizard.php to upgrade to this release. Just upload the files and you are good to go:
lifetype-1.0.5-upgrade-lifetype-1.0.6.tar.gz
lifetype-1.0.5-upgrade-lifetype-1.0.6.zip
Please use the LifeType forums or the LifeType bug-tracker in case you need to discuss anything or report any bug related to LifeType 1.0.6.
Trackback: LifeType News