Was this page helpful?

Security Update 2011-01-20

    Table of contents
    1. 1. Linux
    2. 2. Windows
    3. 3. Configuration Changes

    To apply the security fix, please follow the steps below.

    Linux

    cd /var/www/dekiwiki
    wget http://developer.mindtouch.com/@api/deki/files/6961/mindtouch-update-2011-01-20.patch
    patch -p0 < mindtouch-update-2011-01-20.patch

    Windows

    • Download and install GNU Patch for windows.
    • Download the patch then copy it to your MindTouch web directory:  C:\Program Files\MindTouch\MindTouch\web
    • Launch a command shell (Start -> Run -> cmd)
    • Run the following commands
    cd C:\Program Files\MindTouch\MindTouch\web
    "C:\Program Files\GnuWin32\bin\patch.exe" -p0 < mindtouch-update-2011-01-20.patch
    cacls deki\core\deki_request.php /P Users:R
    cacls deki\plugins\special_page\special_advanced_properties.php /P Users:R

     

    Configuration Changes

    In addition to applying the patch above, please make sure the following configuration key/value pairs are in your Advanced Configuration settings in your control panel.  MindTouch ships with these values enabled by default.

     

    files/blocked-extensions html, htm, exe, vbs, scr, reg, bat, com, xhtml
    files/force-text-extensions
    htm, html, xhtml, bat, reg, sh
    files/whitelisted-disposition-mimetypes text/plain, text/xml, application/xml, application/pdf, application/msword, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/vnd.openxmlformats-officedocument.wordprocessingml.document, application/vnd.openxmlformats-officedocument.spreadsheetml.sheet, application/vnd.openxmlformats-officedocument.presentationml.presentation, application/vnd.oasis.opendocument.presentation, application/vnd.oasis.opendocument.spreadsheet, application/vnd.oasis.opendocument.text, application/x-shockwave-flash
    Was this page helpful?
    Tag page

    Files 1

    FileVersionSizeModified 
    You must login to post a comment.

    Copyright © 2011 MindTouch, Inc. Powered by