WordPress 2.1.2 is a mandatory upgrade
Just a quick point of clarification. WordPress 2.1.2 is a mandatory security upgrade for all users of 2.1 or 2.1.1
It doesn’t matter if you installed 2.1.1 on the first day it came out, well before the cracker modified the file on wordpress.org. It doesn’t matter if you upgraded to 2.1.1 using SVN. WordPress 2.1.2 has a security fix that 2.1.1 doesn’t have. And it has several fixes that 2.1 doesn’t have. So please, upgrade to 2.1.2 now.

[...] Related Links: – WordPress 2.1.1 dangerous, Upgrade – WordPress 2.1.2 is a mandatory upgrade [...]
Rxbbx Blog Wordpress 2.1.2
March 3, 2007 at 5:31 am
[...] sia utile anche questo post It doesn’t matter if you installed 2.1.1 on the first day it came out, well before the cracker [...]
pseudotecnico:blog » Blog Archive » URGENTE: aggiornate a WordPress 2.1.2!!
March 3, 2007 at 6:09 am
[...] http://markjaquith.wordpress.com/2007/03/03/wordpress-212-is-a-mandatory-upgrade/ [...]
» WP 2.1.2 nuovo aggiornamento consigliato dato che la 2.1.1 è stata dichiarata pericolosa » WordPress Italy
March 3, 2007 at 6:56 am
[...] http://markjaquith.wordpress.com/2007/03/03/wordpress-212-is-a-mandatory-upgrade/ [...]
Wolly Weblog » WP 2.1.2 nuovo aggiornamento OBBLIGATORIO dato che la 2.1.1 è stata dichiarata pericolosa
March 3, 2007 at 7:04 am
[...] http://markjaquith.wordpress.com/2007/03/03/wordpress-212-is-a-mandatory-upgrade/ digg_url=’http://www.blogsfera.org/?p=5′; digg_skin = ‘compact’; digg_bgcolor = ‘#FFFFFF’; digg_title = ‘WordPress+2.1.1+%22crackato%22%2C+passare+subito+a+2.1.2′; digg_bodytext = ”; digg_topic = ”; Powered by Gregarious (21) [...]
L’urlo del coniglio » Wordpress 2.1.1 “crackato”, passare subito a 2.1.2
March 3, 2007 at 7:27 am
[...] the off chance that you haven’t heard the news yet. You should upgrade your WordPress install straight away. Don’t hesitate, do it now. [...]
You didn’t hear? Upgrade now! at Holy Shmoly!
March 3, 2007 at 7:37 am
[...] – 13:30 del 3 marzo Leggendo quest’altro post sulla rete, si capisce che la versione 2.1.2 non è consigliata solo a chi ha aggiornato alla 2.1.1 [...]
Aggiornamento critico per Wordpress » StormedBrains
March 3, 2007 at 8:31 am
[...] sito Mark on WordPress è altamente consigliato di effettuare in ogni caso l’upgrade, indipendentemente dal giorno [...]
gidibao’s Cafe » Blog Archive » Emergency update
March 3, 2007 at 8:39 am
[...] Mark on WordPress: WordPress 2.1.2 is a mandatory upgrade [...]
WordPress 2.1.2 - Viktig sikkerhetsoppgradering | Norsk WP
March 3, 2007 at 8:53 am
It would have been more usefull if you said why and what problems its fixes.
Neuromancer
March 3, 2007 at 11:27 am
Mark – are you having more luck than I am on conveying the enormity of the situation? :-p
Aaron Brazell
March 3, 2007 at 12:26 pm
[...] on the day of launch, maybe I could skip the upgrade. Then I read Mark’s post which says it is a mandatory security upgrade for all users of 2.1 or [...]
» Cracker Modifies 2.1.1 Download Files on Wordpress Servers
March 3, 2007 at 10:07 pm
I linked to the changeset that closed the vulnerability. My main concern right now is making sure everyone upgrades.
Mark Jaquith
March 4, 2007 at 2:33 am
[...] the off chance that you haven’t heard the news yet. You should upgrade your WordPress install straight away. Don’t hesitate, do it now. [...]
ThemePress » Donncha: You didn’t hear? Upgrade now!
March 4, 2007 at 3:01 am
I upgraded two blogs to 2.1.2, now http://whatever.com/feed/ says it can’t connect to the database!
Charles Stricklin
March 4, 2007 at 4:27 am
Whew! Clearing the cache seemed to fix it. …sorry for panicking.
Charles Stricklin
March 4, 2007 at 4:42 am
[...] e installato questa release da 4-5 giorni deve assolutamente passare alla versione 2.1.2! Ma Mark on WordPress consiglia caldamente a tutti di installare la 2.1.2, a prescindere da quando si sia installata la [...]
Levysoft » Aggiornamento critico a Wordpress 2.1.2
March 4, 2007 at 6:48 am
Given the nature of this latest “attack”, would it be possible to be begin providing md5 checksums of all downloads? Or are those already available somewhere?
(Of course, if the attacker was able to modify the download package, he very well might have been able to modify the public checksum as well.)
Will Norris
March 4, 2007 at 8:27 pm
So no diff file this time? You’ve gotta be kidding me. This isn’t a matter of national security here.
I’m not editing files twice this week. Yes, my upgrade habits are sloppy. That’s why I use diffs.
Gol, id’
Jesstech
March 4, 2007 at 9:49 pm
….sure like not to hit that stupid ’submit’ button by accident. =/
Jesstech
March 4, 2007 at 9:50 pm
[...] most of you must have already upgraded, if not, and you haven’t heard the news yet. You should upgrade your WordPress 2.1.1 install right away. Don’t delay [...]
WordPress 2.1.2 Important Upgrade! If You Didn’t » D’ Technology Weblog — Technology, Blogging, Gadgets, Fashion, Life Style.
March 5, 2007 at 8:20 am
[...] you read that right. That’s what they say at Mark on WordPress and The Blog Herald. According to the Herald: As was reported last week, the latest upgrade of [...]
drivebyshooter.net » Blog Archive » WordPress 2.1.2 is a mandatory upgrade
March 8, 2007 at 1:18 am
I’m still having problems with the new WP version and PHP 5.2.1. I don’t get permalinks like “/%category%/%postname%/” to work. Some say it doesn’t happen on PHP 5.1. Does anyone know a workaround for this problem?
Leonardo
March 11, 2007 at 8:31 pm
[...] of the latest version of WordPress and announcement that the latest version of WordPress is a mandatory full upgrade. Due to the nature of the new version, there are no upgrade only files available. Don’t wait. [...]
WordPress Wednesday: Mandatory Update Reminder, WordCamp2007, Instant Upgrade Plugin, SxSW Conference, and More at The Blog Herald
March 14, 2007 at 2:55 pm
[...] 2.1.2 Mandatory Upgrade: This is a reminder that the last WordPress release was a mandatory full upgrade due to a server breach. Download the latest version of WordPress [...]
WordPress Wednesday: New WordPress Plugin Directory, WordPress Theme Viewer Upgraded, Summer of Code, and More at The Blog Herald
March 21, 2007 at 9:10 pm
[...] WordPress 2.1.2 Mandatory Upgrade: This is a reminder of the latest version of WordPress is a mandatory full upgrade. [...]
WordPress Wednesday: Hot WordPress Plugins, Slideshows on WordPress.com, Translation Trouble, and More at The Blog Herald
March 28, 2007 at 7:19 pm
[...] WordPress 2.1.2 Mandatory Upgrade: This is a reminder of the latest version of WordPress is a mandatory full upgrade. [...]
WordPress Wednesday: New Security Release, Updated WordPressMU, More WordPress Plugins, and Time to Get Naked at The Blog Herald
April 4, 2007 at 6:56 pm
[...] WordPress 2.1.2 Mandatory Upgrade: This is a reminder of the latest version of WordPress is a mandatory full upgrade. [...]
WordPress Wednesday: New Security Release, Updated WordPressMU, More WordPress Plugins, and Time to Get Naked » TechAddress
April 9, 2007 at 10:45 am