Page 2 of 2

Re: VestaCP 0DAY

Posted: Thu Mar 19, 2020 3:24 pm
by tecob
and since Serghey Rodin has not made any commit to the repo since October 21, 2019. I think there's a very little chance (really near 0) a patch is released.
Please, don't hesitate to proove me I'm wrong.

Re: VestaCP 0DAY

Posted: Mon Mar 23, 2020 12:40 am
by dpeca

Re: VestaCP 0DAY

Posted: Mon Mar 23, 2020 7:28 am
by tecob
Hi @dpeca!

Very great news!
Thanks a lot !!!

Regards

Re: VestaCP 0DAY

Posted: Mon Mar 23, 2020 12:12 pm
by exclu254
dpeca wrote:
Mon Mar 23, 2020 12:40 am
Here is the fix - https://github.com/serghey-rodin/vesta/ ... -602308134
Thanks man, it shows Vesta is still alive.

Re: VestaCP 0DAY

Posted: Mon Mar 23, 2020 12:23 pm
by dpeca
There are many forks that keeps synchronization with official Vesta, and contribute to Vesta as well.
I have my own fork, but I dont want to "advertise" it because I dont want to "harm" official Vesta in any way (my fork is primarly for my own company and my friends).
So, fixing official Vesta is in my interest, so as long I use it as product on my servers - I will contribute - and I have no plan to stop using it.

Re: VestaCP 0DAY

Posted: Tue Mar 24, 2020 8:52 pm
by JuzaoftheClouds
dpeca wrote:
Mon Mar 23, 2020 12:40 am
Here is the fix - https://github.com/serghey-rodin/vesta/ ... -602308134
Thanks!

Re: VestaCP 0DAY

Posted: Thu Mar 26, 2020 7:03 am
by ScIT
Just to add also another security issue: https://cve.mitre.org/cgi-bin/cvename.c ... 2020-10966

@dpeca has already fixed it on GitHub, but @skid seems to be the only one, who can build and release new packages.

Re: VestaCP 0DAY

Posted: Thu Mar 26, 2020 11:15 pm
by exclu254
@skid, please run the build.