glitch-soc / mastodon

A glitchy but lovable microblogging server

Home Page:https://glitch-soc.github.io/docs/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

2024-02-16 security update

ClearlyClaire opened this issue · comments

(For older security updates, see #2594 and #2620)

As you may be aware, Mastodon released a major security update on Friday, Feb 16.

The vulnerability affects pretty much any Mastodon version and glitch-soc is affected too.

The patches are now available for glitch-soc.

Docker images tagged nightly.2024-02-17-security are available with the fixes.

Older glitch-soc versions

The fixes have been merged into glitch-soc's main branch, but I'm aware glitch-soc not having proper releases, people are likely to use older versions.

Therefore, patches have also been ported for specific breakpoints (see #2525 for a description of most of these breakpoints). If you can't update to latest glitch-soc, try to find the version closest to your current deployment: