{"id":1413,"date":"2019-01-16T11:57:26","date_gmt":"2019-01-16T18:57:26","guid":{"rendered":"http:\/\/blogs.oregonstate.edu\/osucws\/?p=1413"},"modified":"2019-01-16T11:57:26","modified_gmt":"2019-01-16T18:57:26","slug":"osu-drupal-7-distribution-update-23","status":"publish","type":"post","link":"https:\/\/blogs.oregonstate.edu\/osucws\/drupal\/osu-drupal-7-distribution-update-23\/","title":{"rendered":"OSU Drupal 7 Distribution Update"},"content":{"rendered":"<p><a href=\"http:\/\/blogs.oregonstate.edu\/osucws\/files\/2016\/11\/drupal_update_header.png\"><img loading=\"lazy\" decoding=\"async\" data-attachment-id=\"1266\" data-permalink=\"https:\/\/blogs.oregonstate.edu\/osucws\/uncategorized\/osu-drupal-distribution-update-3\/attachment\/drupal_update_header\/\" data-orig-file=\"https:\/\/osu-wams-blogs-uploads.s3.amazonaws.com\/blogs.dir\/130\/files\/2016\/11\/drupal_update_header.png\" data-orig-size=\"1200,400\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"drupal_update_header\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/osu-wams-blogs-uploads.s3.amazonaws.com\/blogs.dir\/130\/files\/2016\/11\/drupal_update_header-1024x341.png\" class=\"alignnone wp-image-1266 size-full\" src=\"http:\/\/blogs.oregonstate.edu\/osucws\/files\/2016\/11\/drupal_update_header.png\" alt=\"Drupalicon graphic\" width=\"1200\" height=\"400\" srcset=\"https:\/\/osu-wams-blogs-uploads.s3.amazonaws.com\/blogs.dir\/130\/files\/2016\/11\/drupal_update_header.png 1200w, https:\/\/osu-wams-blogs-uploads.s3.amazonaws.com\/blogs.dir\/130\/files\/2016\/11\/drupal_update_header-300x100.png 300w, https:\/\/osu-wams-blogs-uploads.s3.amazonaws.com\/blogs.dir\/130\/files\/2016\/11\/drupal_update_header-768x256.png 768w, https:\/\/osu-wams-blogs-uploads.s3.amazonaws.com\/blogs.dir\/130\/files\/2016\/11\/drupal_update_header-1024x341.png 1024w\" sizes=\"auto, (max-width: 1200px) 100vw, 1200px\" \/><\/a><\/p>\n<p>An update will be released to our development environment on Wednesday, January 16th, 2019. This update will also be pushed to our production environment on Wednesday, January 16th, 2019. The following updates will be applied:<\/p>\n<h3>Major Version Upgrade<\/h3>\n<ul>\n<li>None<\/li>\n<\/ul>\n<h3>Drupal Core Bug Fix\/Security Updates<\/h3>\n<ul>\n<li><a href=\"https:\/\/www.drupal.org\/project\/drupal\" target=\"_blank\" rel=\"noopener\">Drupal Core<\/a> <a href=\"https:\/\/www.drupal.org\/project\/drupal\/releases\/8.6.6\" target=\"_blank\" rel=\"noopener\">8.6.6<\/a>\n<ul>\n<li>\n<div>Drupal core uses the third-party PEAR Archive_Tar library. This library has released a security update which impacts some Drupal configurations.<\/div>\n<\/li>\n<li>\n<div>A remote code execution vulnerability exists in PHP&#8217;s built-in phar stream wrapper when performing file operations on an untrusted phar:\/\/ URI.<\/div>\n<ul>\n<li>\n<div>Some Drupal code (core, contrib, and custom) may be performing file operations on insufficiently validated user input, thereby being exposed to this vulnerability.<\/div>\n<\/li>\n<li>\n<div>This vulnerability is mitigated by the fact that such code paths typically require access to an administrative permission or an atypical configuration.<\/div>\n<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<h3>Contributed Module Updates<\/h3>\n<ul>\n<li>None<\/li>\n<\/ul>\n<h3>OSU Module Updates<\/h3>\n<ul>\n<li>None<\/li>\n<\/ul>\n<h3>OSU Theme Updates<\/h3>\n<ul>\n<li>None<\/li>\n<\/ul>\n<p>If you have questions or concerns please contact us through our <a href=\"http:\/\/oregonstate.edu\/cws\/contact\" target=\"_blank\" rel=\"noopener\">contact form<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>An update will be released to our development environment on Wednesday, January 16th, 2019. This update will also be pushed to our production environment on Wednesday, January 16th, 2019. The following updates will be applied: Major Version Upgrade None Drupal Core Bug Fix\/Security Updates Drupal Core 8.6.6 Drupal core uses the third-party PEAR Archive_Tar library.&hellip; <a href=\"https:\/\/blogs.oregonstate.edu\/osucws\/drupal\/osu-drupal-7-distribution-update-23\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":12,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[672],"tags":[],"class_list":["post-1413","post","type-post","status-publish","format-standard","hentry","category-drupal"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/posts\/1413","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/comments?post=1413"}],"version-history":[{"count":2,"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/posts\/1413\/revisions"}],"predecessor-version":[{"id":1440,"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/posts\/1413\/revisions\/1440"}],"wp:attachment":[{"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/media?parent=1413"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/categories?post=1413"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.oregonstate.edu\/osucws\/wp-json\/wp\/v2\/tags?post=1413"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}