Follow

⚠️ We are planning to release important security fixes for on February 3rd, between 13:00 and 15:00 UTC.

To make sure that most servers can upgrade swiftly, we will release the fixes both as v3.3.2 and v3.4.6 (they will, of course, be also available on the main branch).

To make sure the upgrades on those older versions require the least intervention, with just a process restart, we have just released preparatory releases v3.3.1 and v3.4.5.

Please upgrade!

@erictapen wegen security-Relevanz sollte die aktuellste Version auch in nixpkgs stable aufkreuzen, nicht nur in unstable.
Ob es sinnvoll ist, mit dem security team zusammenzuarbeiten um dann 3.4.5 möglichst schnell durch merge und hydra zu bekommen?

Bis zum 3. schaffe ich es leider vermutlich nicht, mich groß daran zu beteiligen, sorry.

@schmittlauch Danke fürs Bescheid sagen! War bisher an mir vorbeigegangen. Ja klingt sinnvoll, versuche das möglichst schnell durchzubringen.

@schmittlauch Zur Zusammerarbeit mit dem security team: Ich sehe nicht die Notwendigkeit. Sehr wahrscheinlich werde ich die PR selbst mergen und schneller kann das update eh nicht in den Channels landen.

Hier ist schonmal die PR für den Vorbereitungsrelease: github.com/NixOS/nixpkgs/pull/

@Mastodon Is it possible to get the patch in advance? As I have many hosted mastodon/hometown instances that I'd like to have things prepared in advance for.

perhaps @mastohost would also need this too

@support the fixes should be trivial to apply on top of current releases, so i don't think you'd need the patches in advance

that being said, if you have custom code and are worried this could make applying the patches more difficult, i could have a look at your code and see if the patches need any change for you

#LastBoost this affects pretty much any version of Mastodon, including #GlitchSoc

Patches will be provided to glitch-soc as they are released for mainline Mastodon

In preparation, please update to the latest #GlitchSoc commit!

Also, if you are a #MastoAdmin, I would recommend you follow @Mastodon and use the bell notification feature to get important notifications!

@Claire hey - just upgraded GlitchSoc on the toot-lab, am now getting 500 errors. mastodon-web log showing `NoMethodError (undefined method `edited_at' for #<Status id: foo, uri: bar, account_id: baz, etc>` after the upgrade. any tips?

@djsundog did you run migrations before restart mastodon-web? might be worth running tootctl cache clear too but i don't think that's needed

@Claire aha, I totally skipped the migrations - whoops! thanks much!

@Claire confirming that did indeed resolve the issue entirely - thanks again, you're the best!

@Mastodon Why didn't Mastodon merge new Crowdin translations anymore?

@duy @Mastodon New translations are added in minor and major releases, not patch releases. All recent releases have simply been patch releases.

@fl4nn yeah i'm aware, thanks. i have set time aside to upgrade the day of

Sign in to participate in the conversation
Mastodon

The original server operated by the Mastodon gGmbH non-profit