HostGator - The BEST Web Hosting comapny on the net. Great packages at LOW prices.

Upgrade to WordPress 2.8.4 – Security Release

by George Serradinho on August 12, 2009



Morning all,

I saw a post about the new version of WordPress that is available for download. I did not see the link on my admin dashboard, but when I went to Tools >>Upgrade, it showed up there. I advise you to upgrade as it’s a security release.

I upgraded to the new version with absolutely no problems at all. I know may others sometimes have issues and I hope that also starts to decrease in time.

Please remember to make a backup of your database before upgrading.

Details of WordPress Update (version 2.8.4)

Aspecially crafted URL could be requested that would allow an attacker to bypass a security check to verify a user requested a password reset. As a result, the first account without a key in the database (usually the admin account) would have its password reset and a new password would be emailed to the account owner. This doesn’t allow remote access, but it is very annoying.

Version 2.8.4 which fixes all known problems is now available for download and is highly recommended for all users of WordPress.

Download link for new version

Let me know if you have any problems in upgrading. Always nice to know if there are problems from other users or not.

Submit post to StumbleUpon Submit post to Twitter Submit post to Delicious Submit post to Digg Submit post to Reddit Submit post to Technorati Submit post to Facebook Submit to Shoutmeme.com

Other Interesting Posts:

WordPress & Thesis Customizations

This webiste is using Thesis theme & WordPress. I can create you a similar website or update yours.

View my services or portfolio for more details.

Author Information

Article by George Serradinho

I am the proud owner of Serradinho and have made this my second home. I'm into blogging, downloads, WordPress and the internet in general. I also love meeting and helping others and learning new techniques.

{ 20 comments }

1 Kurt Avish August 12, 2009 at 12:53 pm

Follow on Twitter Follow @kurtavish on Twitter.



I wrote about that on my blog IslandCrisis.net too this morning. I always wait about one week before upgrading but this time seeing the security risk was much higher and even some scripting kids can attack, so I decided to upgrade instantly. Have to upgrade my other blogs too now.
Kurt Avish´s last blog ..50 Free Premium Quality Wordpress Themes My ComLuv Profile

2 George Serradinho August 12, 2009 at 2:25 pm

Follow on Twitter Follow @gfserradinho on Twitter.



@Kurt – glad to hear you upgraded, did you experience any problems while upgrading? I know some users do, just want to know if you did. Did you upgrade automatically or manually?

3 Kurt Avish August 13, 2009 at 7:13 am

Follow on Twitter Follow @kurtavish on Twitter.



I upgraded using the automatic link in wordpress dashboard. Yea thanks god this time there was no problem while upgrading. But as a precautionary measure I always do a manual database backup before and upgrade. You never know when the binaries decide to go crazy lol.
Kurt Avish´s last blog ..Second Swine Flu Victim in Mauritius My ComLuv Profile

4 George Serradinho August 13, 2009 at 7:55 am

Follow on Twitter Follow @gfserradinho on Twitter.



@Kurt – why do it manually. Use WP-DBManager plugin for your database. I get a backup sent to my email every day.

5 Nicholas Z. Cardot August 12, 2009 at 3:09 pm

Follow on Twitter Follow @Nicholas_Cardot on Twitter.



Thanks for the update. I just ran over to my blog and updated. I wouldn’t have even noticed if you hadn’t posted on it. Thanks.
Nicholas Z. Cardot´s last blog ..The Fine Art of Leading Your Readers My ComLuv Profile

6 George Serradinho August 12, 2009 at 4:01 pm

Follow on Twitter Follow @gfserradinho on Twitter.



@Nicholas – glad to be of help. Did you have any problems upgrading?

7 The Gooroo @ iBlogPlanet.com August 12, 2009 at 3:55 pm

Nice! Another update. It’s 7AM, and I haven’t slept yet. Going to get to bed now, but I’ll update when I’m up. Thanks George :)
The Gooroo @ iBlogPlanet.com´s last blog ..My Experiences With Racism As A Child My ComLuv Profile

8 George Serradinho August 12, 2009 at 4:04 pm

Follow on Twitter Follow @gfserradinho on Twitter.



@Gooroo – that’s late, go to bed and get a nice rest and be refreshed for later! Let me know if you run into problems.

9 Benjamin Cip August 12, 2009 at 5:51 pm

There are a lot of update on Wordpress recently. I always upload as soon as I see an update anyway. I see it in my dashboard.
Benjamin Cip´s last blog ..Don’t Have Idea How To Monetize Your Blog? My ComLuv Profile

10 George Serradinho August 12, 2009 at 8:15 pm

Follow on Twitter Follow @gfserradinho on Twitter.



@Benjamin – I did not see the update link in my dashboard and read about it on another site. I just upgraded automatically then.

11 ShaunJudy August 12, 2009 at 10:24 pm

This security issue was being spoken about all over Twitter for that last few days. The guys over at wordpress got this update out pretty swiftly like always.
ShaunJudy´s last blog ..Anderson Silva Career Highlights Video My ComLuv Profile

12 George Serradinho August 13, 2009 at 7:01 am

Follow on Twitter Follow @gfserradinho on Twitter.



@shaunJudy – I have a bit quiet on Twitter so I did not hear about it. Thanks for the feedback. The developers have made sure that they close the security gaps ASAP.

13 Harsh Agrawal August 13, 2009 at 12:16 pm

Follow on Twitter Follow @denharsh on Twitter.



The security risk is high but not as higher as it sounds..Its more like irritating the admin by resetting the password. Anyways it’s always a good idea to keep your wordpress blog updated.
Harsh Agrawal´s last blog ..Google Reader Goes Social with Twitter, facebook and more social features My ComLuv Profile

14 George Serradinho August 13, 2009 at 12:32 pm

Follow on Twitter Follow @gfserradinho on Twitter.



@Harsh – you are correct that it will peeeee the admin off, lol.

15 Alvin Lim August 14, 2009 at 6:27 am

Follow on Twitter Follow @alvinlim84 on Twitter.



I am still getting stuck at version 2.8.3 LOL Wish can always upgrade easily with just one click button.
Alvin Lim´s last blog ..How to Display Entrecard Top Droppers Using Simple Way My ComLuv Profile

16 George Serradinho August 14, 2009 at 6:55 am

Follow on Twitter Follow @gfserradinho on Twitter.



@Alvin – if you get stuck then upgrade manually, they tell you which files to upload or change. Try your best to stay up to date.

17 Alvin Lim August 14, 2009 at 7:30 am

Follow on Twitter Follow @alvinlim84 on Twitter.



Yeah. I will try my best to stay up to date and upgrade latest version as soon as possible as there is security leak issue in previous version
Alvin Lim´s last blog ..How to Display Entrecard Top Droppers Using Simple Way My ComLuv Profile

18 George Serradinho August 14, 2009 at 7:55 am

Follow on Twitter Follow @gfserradinho on Twitter.



@Alvin – yes, it’s a security risk. The change for WordPress 2.8.4 is very small so it should take you very little time.

19 Nihar August 14, 2009 at 6:58 pm

Yeah. i did it as soon as i saw the link on the admin page.
Nihar´s last blog ..Friday Night Links Party – 14 August 2009 My ComLuv Profile

20 George Serradinho August 14, 2009 at 7:51 pm

Follow on Twitter Follow @gfserradinho on Twitter.



– I upgraded before as you can read from my post

Comments on this entry are closed.

Previous post:

Next post: