<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Life Insurance Think Tank Blog &#187; Security</title>
	<atom:link href="http://blog.lifeinsurancethinktank.com/category/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.lifeinsurancethinktank.com</link>
	<description>Life Insurance Education</description>
	<lastBuildDate>Sat, 22 Jun 2013 22:11:18 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
		<item>
		<title>WordPress 3.4.1 Maintenance and Security Release</title>
		<link>http://blog.lifeinsurancethinktank.com/wordpress-3-4-1-maintenance-and-security-release/</link>
		<comments>http://blog.lifeinsurancethinktank.com/wordpress-3-4-1-maintenance-and-security-release/#comments</comments>
		<pubDate>Wed, 27 Jun 2012 19:57:46 +0000</pubDate>
		<dc:creator>Life Think Tank</dc:creator>
				<category><![CDATA[Legacy Planning]]></category>
		<category><![CDATA[Life Insurance FAQ]]></category>
		<category><![CDATA[Life Insurance Think Tank]]></category>
		<category><![CDATA[Releases]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Life Insurance]]></category>

		<guid isPermaLink="false">http://wordpress.org/news/?p=2383</guid>
		<description><![CDATA[WordPress 3.4.1 is now available for download. WordPress 3.4 has been a very smooth release, and copies are flying off the shelf &#8212; 3 million downloads in two weeks! This maintenance release addresses 18 bugs with version 3.4, including: Fixes an issue where a theme&#8217;s page templates were sometimes not detected. Addresses problems with some category permalink [...]]]></description>
				<content:encoded><![CDATA[<p>WordPress 3.4.1 is now available for download. WordPress 3.4 has been a very smooth release, and copies are flying off the shelf &#8212; 3 million downloads in two weeks! This maintenance release addresses <a href="http://core.trac.wordpress.org/query?status=closed&amp;resolution=fixed&amp;milestone=3.4.1&amp;group=resolution&amp;order=severity&amp;desc=1">18 bugs</a> with version 3.4, including:</p>
<ul>
<li>Fixes an issue where a theme&#8217;s page templates were sometimes not detected.</li>
<li>Addresses problems with some category permalink structures.</li>
<li>Better handling for plugins or themes loading JavaScript incorrectly.</li>
<li>Adds early support for uploading images on iOS 6 devices.</li>
<li>Allows for a technique commonly used by plugins to detect a network-wide activation.</li>
<li>Better compatibility with servers running certain versions of PHP (5.2.4, 5.4) or with uncommon setups (safe mode, open_basedir), which had caused warnings or in some cases prevented emails from being sent.</li>
</ul>
<p>Version 3.4.1 also fixes a few security issues and contains some security hardening. The vulnerabilities included potential information disclosure as well as an bug that affects multisite installs with untrusted users. These issues were discovered and fixed by the WordPress security team.</p>
<p><strong><a href="http://wordpress.org/download/">Download 3.4.1</a> now or visit Dashboard → Updates in your site admin to update now.</strong></p>
<p><em>Green was a bit green<br />
We have hardened it up some<br />
Update WordPress now</em></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.lifeinsurancethinktank.com/wordpress-3-4-1-maintenance-and-security-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>WordPress 3.3.2 (and WordPress 3.4 Beta 3)</title>
		<link>http://blog.lifeinsurancethinktank.com/wordpress-3-3-2-and-wordpress-3-4-beta-3/</link>
		<comments>http://blog.lifeinsurancethinktank.com/wordpress-3-3-2-and-wordpress-3-4-beta-3/#comments</comments>
		<pubDate>Fri, 20 Apr 2012 15:10:37 +0000</pubDate>
		<dc:creator>Life Think Tank</dc:creator>
				<category><![CDATA[Development]]></category>
		<category><![CDATA[Legacy Planning]]></category>
		<category><![CDATA[Life Insurance FAQ]]></category>
		<category><![CDATA[Life Insurance Think Tank]]></category>
		<category><![CDATA[Releases]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Life Insurance]]></category>

		<guid isPermaLink="false">http://wordpress.org/news/?p=2262</guid>
		<description><![CDATA[WordPress 3.3.2 is available now and is a security update for all previous versions. Three external libraries included in WordPress received security updates: Plupload (version 1.5.4), which WordPress uses for uploading media. SWFUpload, which WordPress previously used for uploading media, and may still be in use by plugins. SWFObject, which WordPress previously used to embed [...]]]></description>
				<content:encoded><![CDATA[<p><a href="http://wordpress.org/download/">WordPress 3.3.2</a> is available now and is a security update for all previous versions.</p>
<p>Three external libraries included in WordPress received security updates:</p>
<ul>
<li>Plupload (version 1.5.4), which WordPress uses for uploading media.</li>
<li>SWFUpload, which WordPress previously used for uploading media, and may still be in use by plugins.</li>
<li>SWFObject, which WordPress previously used to embed Flash content, and may still be in use by plugins and themes.</li>
</ul>
<p>Thanks to <a href="https://nealpoole.com/blog/">Neal Poole</a> and <a href="http://greywhind.wordpress.com/">Nathan Partlan</a> for <a href="http://codex.wordpress.org/FAQ_Security">responsibly disclosing</a> the bugs in Plupload and SWFUpload, and <a href="http://mars.iti.pk.edu.pl/~grucha/">Szymon Gruszecki</a> for a separate bug in SWFUpload.</p>
<p>WordPress 3.3.2 also addresses:</p>
<ul>
<li>Limited privilege escalation where a site administrator could deactivate network-wide plugins when running a WordPress network under particular circumstances, disclosed by <a href="http://joncave.co.uk/">Jon Cave</a> of our WordPress core security team, and <a href="http://sixohthree.com/">Adam Backstrom</a>.</li>
<li>Cross-site scripting vulnerability when making URLs clickable, by Jon Cave.</li>
<li>Cross-site scripting vulnerabilities in redirects after posting comments in older browsers, and when filtering URLs. Thanks to <a href="http://www.sneaked.net/">Mauro Gentile</a> for responsibly disclosing these issues to the security team.</li>
</ul>
<p>These issues were fixed by the WordPress core security team. Five other bugs were also fixed in version 3.3.2. Consult the <a href="http://core.trac.wordpress.org/log/branches/3.3?rev=20552&amp;stop_rev=20087">change log</a> for more details.</p>
<p><a href="http://wordpress.org/download/">Download WordPress 3.3.2</a> or update now from the Dashboard → Updates menu in your site&#8217;s admin area.</p>
<hr />
<h3>WordPress 3.4 Beta 3 also available</h3>
<p>Our development of WordPress 3.4 development continues. Today we are proud to release Beta 3 for testing. <a href="http://core.trac.wordpress.org/log/trunk?rev=20552&amp;stop_rev=20450">Nearly 90 changes</a> have been made since Beta 2, released 9 days ago. (We are aiming for a beta every week.)</p>
<p>This is still beta software, so <strong>we don&#8217;t recommend that you use it on production sites</strong>. But if you&#8217;re a plugin developer, a theme developer, or a site administrator, <strong>you should be running this on your test environments</strong> and <a href="http://codex.wordpress.org/Reporting_Bugs">reporting any bugs</a> you find. (See the <a href="http://core.trac.wordpress.org/report/5">known issues here</a>.) If you&#8217;re a WordPress user who wants to open your presents early, take advantage of WordPress&#8217;s famous 5-minute install and spin up a secondary test site. <a href="http://wordpress.org/support/forum/alphabeta">Let us know what you think</a>!</p>
<p>Version 3.4 Beta 3 includes all of the fixes included in version 3.3.2. <a href="http://wordpress.org/wordpress-3.4-beta3.zip">Download WordPress 3.4 Beta 3</a> or use the <a href="http://wordpress.org/extend/plugins/wordpress-beta-tester/">WordPress Beta Tester</a> plugin.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.lifeinsurancethinktank.com/wordpress-3-3-2-and-wordpress-3-4-beta-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
