CERT mailing list archives

WordPress Releases Security Update


From: "US-CERT" <US-CERT () ncas us-cert gov>
Date: Thu, 04 Sep 2014 13:11:41 -0500

NCCIC / US-CERT

National Cyber Awareness System:

WordPress Releases Security Update [ 
https://www.us-cert.gov/ncas/current-activity/2014/09/04/WordPress-Releases-Security-Update ] 09/04/2014 01:35 PM EDT 
Original release date: September 04, 2014

WordPress 3.9.2 has been released to address multiple vulnerabilities, one of which could allow a possible denial of 
service issue in PHP’s XML processing.  WordPress 3.7.3 or 3.8.3 users will be updated to 3.7.4 or 3.8.4. Users 
operating older, unsupported versions of WordPress are encouraged to upgrade to 3.9.2.

US-CERT recommends users and administrators review the WordPress Maintenance and Security Release blog  [ 
http://wordpress.org/news/2014/08/wordpress-3-9-2/ ]  and apply the necessary updates.

________________________________________________________________________

This product is provided subject to this Notification [ http://www.us-cert.gov/privacy/notification ] and this Privacy 
& Use [ http://www.us-cert.gov/privacy/ ] policy.

________________________________________________________________________

OTHER RESOURCES: Contact Us [ http://www.us-cert.gov/contact-us/ ] | Security Publications [ 
http://www.us-cert.gov/security-publications ] | Alerts and Tips [ http://www.us-cert.gov/ncas ] | Related Resources [ 
http://www.us-cert.gov/related-resources ] 

STAY CONNECTED: Sign up for email updates [ http://public.govdelivery.com/accounts/USDHSUSCERT/subscriber/new ] 


Current thread: