iSnare.com - Free Content Articles Directory
Authors Contents [Advanced Search][Add OpenSearch][Job Search]
Distribute your articles to thousands of article sites for only $2 and below! Read more...

Index  Computers and Technology
 

Wordpress Version 2.0.3 Review

 
[ Contact the Author] [ Send to a Friend] [ Article Publisher] [Make PDF] [ Print] [ Bookmark & Share]
 
Read our Terms of Service before reprinting this article. The submitter specified above has claimed the rights to this article.
Danny Wirken

WordPress, the premier free open-source blogging utility, has gone through several upgrades in its life. Today it's one of the most popular blogging tools on the Internet; it's easy to use, powerful, and very versatile. It also has a very active base of skilled users who are eager to improve the product and to help out those who haven't tried it before.

Though the Strayhorn 1.5 version is the favorite for many, it is not as stable or as secure as the newest version 2.0.3. The best part of the new version is the security patch; the new "nonce" security key reduces the chances of a malicious hacker finding a way into your admin panel. Besides the security patch, though, several minor bugs have been squashed with this version. Though a major upgrade to 2.1 is due out soon, the 2.0.3 is something you should definitely download and install if only because of the security fixes, which were actually backported from the major upgrade files.

In addition to the 2.0.3 install, you should be aware that some bugs have already been found, and that a plugin will need to be installed to repair those bugs. If you modify any of the files that this patch plugin fixes, you'll need to either merge the changes with the new files or make those changes manually once again. You can find these issues by running a diff to locate changes; if the only changes you find are your own, then you're fine, and otherwise you'll need to merge them manually into the new files.

The short list of what WordPress 2.0.3 fixes includes:

•Small performance enhancements
•Movable Type / Typepad importer fix
•Enclosure (podcasting) fix
•The aforementioned security enhancements (nonces)

One mostly annoying bug shipped with 2.0.3 as well. It gives you an "Are You Sure?" dialog when you edit comments, and adds a backslash before each quotation mark in the post you're editing. Make certain to download the patch.

What's Up With The Security Problem?

The security problem seems minor, but the WordPress team is fixing it before it grows into something major. It's a bug that takes advantage of the cookie you download when you sign into WordPress. The cookie in question prevents anyone unauthorized from accessing your admin panel. It's tied to your user account, and verifies that you are the authorized administrator of the account you're working on.

The bug that's being fixed is one that takes advantage of a sociological trick. If someone created a link or a form pointing to your WordPress admin account, they might possibly be able to trick you into clicking the link. In the case of the one here, you delete a post. This sounds both minor and highly unlikely; but a small crack in the door can be exploited later by a dedicated hacker. And this is also the kind of bug that, a few years ago, allowed a hacker access to the Microsoft databases, from which he stole portions of the Longhorn and other codes. So yes, you do need to take it seriously.

WordPress had ensured you were safe from this kind of hacking by using a utility called HTTP_REFERER. But this utility has some issues. For instance, with JavaScript in Internet Explorer, it can be spoofed. In addition, certain firewalls and proxies can strip the information it's supposed to carry out, causing some people to be unable to use their WordPress admin accounts the way they're supposed to be able to.

Now, instead of the HTTP_REFERER, a nonce is used; this is a number used once. It's like a password that changes every twelve hours, and is valid for twenty-four hours. The nonce is unique to the specific WordPress install being used, the WordPress user logged in, the action, the object of the action, and the 24-hour time of the action. When any of these is changed, the nonce is no longer valid. All plugin authors will have to ensure the nonce is added to their forms and other interactive capabilities that may be affected.

Upgrading from WordPress 2.0.2 to 2.0.3

As with any upgrade, the first thing you should do is back up everything: the files in your WordPress directory, the database plugin with any changes, and any data you have added should be backed up as well. In addition, it might be a good idea to do a second backup of your entire WordPress directory just in case something goes wrong with your install.

Now remove the wp-admin directory entirely. Also remove the wp-includes directory, except for any translation and language files or directories you may have added; add these files to the backup files you created earlier. Finally, remove all the files where WordPress is installed with the exception of the file http://wp-config.php.

Now you're ready to start your install. Download and unpack the 2.0.3 version in a separate install directory. You want to make sure you can control files and directories you copy over. Now install the new wp-admin and wp-includes directories.

Install the rest of the files of the top directory, with the exception of the http://wp-config-sample.php file.

Now enter the admin panel. You should see the following message: "Your database is out of date. Please upgrade." Follow the link provided to update the database, and follow the directions there. Now remove the files wp-admin/upgrade.php and wp-admin/install.php. Download the plugin fix; add it and activate it. Replace your backup files where they need to be, and do the comparisons if you've modified any of your earlier files. This should take care of the whole thing.

For geeks, there is also an upgrade package that only includes the changed files. Look for it under Changes Diff (2.0.2 > 2.0.3). It consists of a zip file that is much quicker to install, but you should be certain you can handle it before using it.

Important NoticeDISCLAIMER: All information, content, and data in this article are sole opinions and/or findings of the individual user or organization that registered and submitted this article at Isnare.com without any fee. The article is strictly for educational or entertainment purposes only and should not be used in any way, implemented or applied without consultation from a professional. We at Isnare.com do not, in anyway, contribute or include our own findings, facts and opinions in any articles presented in this site. Publishing this article does not constitute Isnare.com's support or sponsorship for this article. Isnare.com is an article publishing service. Please read our Terms of Service for more information.

Article Tags: files [See Dictionary], security [See Dictionary], wordpress [See Dictionary]
Got a question about this article? Ask the community!
Article published on July 21, 2006 at Isnare.com
 
Rate this article:

Microsoft To Conquer Localized Media Delivery Problems
Submitted by: Danny Wirken

From the time that commercial paid advertisements and other media content came into being, it inadvertently led to an increase in the demand for more highly targeted and effective marketing campaigns on the Internet...

Microsoft To Integrate Rss Support In Windows Operating System
Submitted by: Danny Wirken

Last year Microsoft Corporation shocked the world when they revealed their intention to build RSS (Really Simple Syndication) support in the latest version of the Microsoft Windows operating system, which is under the code-name “Longhorn...

The Latest Patent Applications: Kernel Of Technological Advancement
Submitted by: Danny Wirken

The value of freedom in a country is priceless If one country has freedom of speech and thought then they are sure to have a bright future ahead of them...

Understanding Support Vector Machines (SVMs) Classifiers
Submitted by: Danny Wirken

The past couple of years witnessed the increased applications of statistical methods in different fields and for different purposes...

Why Wireless DA Is A Multi-Billion Dollar Industry
Submitted by: Danny Wirken

Wireless Directory Assistance (DA) is a virtual directory that offers a fast way to get directory-dependent applications online...

How To Block Direct Image Linking Using .htaccess
Submitted by: Danny Wirken

Most of us have a specified limit to the amount of traffic our web servers will handle for us That limit seems very generous – until you start looking at image downloads and the bandwidth required...

Improving Customer Service Through Help Desk Software
Submitted by: Danny Wirken

Help desk have now become a core part of good business service and operation The term itself is generally associated with the end user support center...

Apple Tiger vs Windows Vista
Submitted by: Danny Wirken

Microsoft’s next-generation operating system is coming in early 2007, offering improvements that are both impressive and unprecedented in the Windows world...

Accessory Computer
Submitted by: Danny Wirken

A home away from home is a great thing, so why not have an office away from the office tooThe spare room or a quiet corner can be a perfect place for productivity...

Plantronics DSP 400 Headset
Submitted by: Danny Wirken

The Plantronics DSP 400 headset produces high quality sound whether you use it with a laptop or a desktop computer...

Diner Dash
Submitted by: Danny Wirken

Diner Dash is all about a young burnt out corporate employee named Flo She gets tired of running the rat race and so opens up her own restaurant...

Avast Antivirus Home Edition
Submitted by: Danny Wirken

Prior to trying the Avast 46 Home Edition, I was very much a Norton user...

Bookworm
Submitted by: Danny Wirken

Bookworm is a very good alternative to some of the violent action games popular today The goal is simple: spell words by linking letters found on the board...

Apple iPod Special U2 Edition
Submitted by: Danny Wirken

New iPod models have sprung up as quickly as mushrooms after the rain and each time they just seem to get better and better...

Zuma Deluxe
Submitted by: Danny Wirken

Zuma is one of those arcade games that starts off really easy and becomes more difficult with each level...

Choosing a Guillotine Style Paper Cutter
Submitted by: Jeff McRitchie

An important piece of equipment to have in your copy room or work area is a guillotine paper cutter Guillotine paper cutters can help you quickly trim large stacks of paper...

Sony Ericsson W595 Mobile Phone Review - The Latest and Best Walkman Phone?
Submitted by: Carlson Osbourne

The one thing that most Sony Ericsson phones have in abundance is good looks No matter what lies beneath the surface, they all tend to have unique and beautiful appearances that can enhance the style factor of everyone using them...

Sony Ericsson W705 Mobile Phone Review - Tune Into the Beat With the Ultimate Walkman Phone
Submitted by: Carlson Osbourne

Sony Ericsson is known the world over for their amazingly functional and stylish mobile phones It is easy to see why when you take a look at some of the handsets that they have produced over the years and one of their latest additions to the Walkman range can be added to that illustrious list...

Notebook - Smart Shopping Tips
Submitted by: Roberto Sedycias

There are many choices of notebooks and sometimes it is hard to find the appropriate notebook that represents the true value for money...

The Many Applications of GPS Cell Phone
Submitted by: Roberto Sedycias

GPS is known to navigate global positioning easily and is widely used in vehicle tracking and map navigation, benefiting people in their daily needs...

Things To Know About Formatting Your Memory Card
Submitted by: Lance Edwards

If you use a new memory card on your digital camera for the first time you should always format it, or it may not store your photos correctly...

Choosing a Scanner
Submitted by: Lorraine Vybihal

When choosing a scanner for your business, there are many things you need to consider You need a scanner that is fast, reliable, and that will increase your overall productivity...

Verizon FiOS is an Industry Leader in Quality
Submitted by: Russell Blanc

People who want the highest quality TV and Internet service choose Verizon FiOS Consumers these days demand high quality as well as an affordable price when it comes to services like TV, Internet and home phone service...

Linux Vs Windows - Which One to Pick?
Submitted by: Roberto Sedycias

Choosing the appropriate operating system is based on the server`s function Linux is powerful and has a versatile operating system while Windows is well-known for its easy to use operating system and versatility...

Nintendo Wii Vs Playstation 3 - A Genuine Combat
Submitted by: Roberto Sedycias

Nintendo Wii and Playstation 3 are the top-notch gaming consoles commanding the market However, knowing the difference of Nintendo Wii Vs Playstation 3 gives clarity about each gaming console and its features...

Nokia 5800 XpressMusic Mobile Phone Review - The Trendsetter of Nokia Touch Screens
Submitted by: Carlson Osbourne

Behind all of their market competitors they may be but Nokia have now introduced their very first touch screen phone...

Nokia 6260 Slide Mobile Phone Review - Mobile High Speed Technology at Your Fingertips
Submitted by: Carlson Osbourne

The Nokia 6260 Slide is one of the latest additions to the Nokia mobile phone handset family and also one of the most modern...

Why Are Car Audio System Reviews Important?
Submitted by: Jack Wylde

In today’s world there are numerous kinds of car audio brands that have come about in business in the car accessory market...

Entertainment in Chrysler Radio
Submitted by: Jack Wylde

The world today people experience is very stressful People of today know little about life and its pleasure...

Vauxhall (Opel) the Car of the Year
Submitted by: Jack Wylde

Many mans craze is the Vauxhall car People are running behind this car what does this have...

Isnare.com Footer Divider

© 2004-2009. Isnare Free Articles - An Isnare Online Technologies Free Articles Project. All Rights Reserved.   Privacy Policy