Update your WordPress blog now.

How did I miss this?  The latest update (to 2.3.3) fixes an exploit that may have been used at my own site.

For me, the update process looked like this:

1. ssh to my blog's directory.
2. svn sw http://svn.automattic.com/wordpress/tags/2.3.3



Feb. 11th, 2008 02:14 am (UTC)
Yeah - i caught that one too. XD Definitely a needed upgrade. You think that's the one that got you?
Feb. 11th, 2008 02:58 am (UTC)
I see that you updated. What did you have to do to update? (Do you have any tips for davidd in the comment below?)
Feb. 11th, 2008 05:14 am (UTC)
Heh - well, DH makes it a little easier if you're using a WP install that they did for you. If you sued their one-click install thing, you can also one-click upgrade.

but one of my instances isn't, so I had to do it by hand - i essentially downloaded and unzipped the entire 2.3.3 install package, copies up everything but wp-content (to preserve my themes and custom css) and that was enough. I was going to copy around the files I specifically customized, but it worked before then. ;)
Feb. 11th, 2008 02:47 am (UTC)
yay. wordpress update. sounds like fun-fun-fun.

If only I'd known being the world authority on Hitler's Favorite Beer would entail such ongoing responsibility.

Edited at 2008-02-11 02:48 am (UTC)
Feb. 11th, 2008 02:55 am (UTC)
I'm only replying to stop you from being able to edit your own comment. :)

Yeah, what can I say? There's a vulnerability. I'm proud that I made the process of updating trivial. It sucks otherwise.
Feb. 11th, 2008 03:41 am (UTC)
Yeah... I guess I've kinda been editing/deleting a lot of comments lately.

Oh, to have such mad programming skillz! Then, in addition to painless updates, I could've had a cool job, made lotsa money... and maybe even attracted a hot nurse.

(comment subject to editing to remove "hot nurse" remark)
