DSpace Community, Today we'd like to also announce DSpace 1.7.3, a security release for the 1.7.x platform.
DSpace 1.7.3 addresses a security vulnerability in the JSPUI. Although there are no known exploits of this vulnerability, we recommend all 1.7.x JSPUI users upgrade to 1.7.3 (or 1.8.3 or 3.2). This JSPUI security fix has been backported to 1.7.3 (from 3.2) as per our current DSpace Software Support Policy [1]. This 1.7.3 release also contains minor improvements that make 1.7.x more Git/GitHub friendly, allowing users to more easily work with 1.7 in Git/GitHub. More details on the 1.7.3 release (including download links) can be found at: https://wiki.duraspace.org/display/DSPACE/DSpace+Release+1.7.3+Notes Recommendations: * We highly recommend that all 1.7.x JSPUI users either upgrade to 1.7.3 or 1.8.3 or 3.2 to fix the JSPUI security vulnerability. * Users of previous versions of DSpace (1.6.x or below), who depend on the JSPUI, are also encouraged to upgrade to 1.7.3 or 1.8.3 or 3.2 to fix this vulnerability. * If you are unable to upgrade at this time, a manual patch has been provided at https://jira.duraspace.org/browse/DS-1603 (you must register to access this ticket) 1.7.3 Installation and Upgrade instructions: * Installation: https://wiki.duraspace.org/display/DSDOC17/Installation * Upgrade from 1.7.x to 1.7.3: https://wiki.duraspace.org/display/DSDOC18/Upgrading+From+1.7+to+1.7.x * Upgrade from 1.7.x to 1.8.3: https://wiki.duraspace.org/display/DSDOC18/Upgrading+From+1.7.x+to+1.8.x * Upgrade (general instructions): https://wiki.duraspace.org/display/DSDOC18/Upgrading+a+DSpace+Installation DSpace would not exist without the hard work and support of the community! We'd like to thank each of you for continuing to use DSpace, support DSpace, test DSpace, and provide feedback to the developers. Sincerely, Tim Donohue, on behalf of the DSpace Committers [1] DSpace Software Support Policy: https://wiki.duraspace.org/display/DSPACE/DSpace+Software+Support+Policy ------------------------------------------------------------------------------ See everything from the browser to the database with AppDynamics Get end-to-end visibility with application monitoring from AppDynamics Isolate bottlenecks and diagnose root cause in seconds. Start your free trial of AppDynamics Pro today! http://pubads.g.doubleclick.net/gampad/clk?id=48808831&iu=/4140/ostg.clktrk _______________________________________________ DSpace-tech mailing list DSpace-tech@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/dspace-tech List Etiquette: https://wiki.duraspace.org/display/DSPACE/Mailing+List+Etiquette