MAY
18

cPanel TSR-2020-0003 Announcement

cPanel has released new builds for all public update tiers. These updates provide targeted changes to address security concerns with the cPanel & WHM product. These builds are currently available to all customers via the standard update system.

cPanel has rated these updates as having CVSSv3 scores ranging from 3.3 to 9.9.

Information on cPanel’s security ratings is available at https://go.cpanel.net/securitylevels.

If your deployed cPanel & WHM servers are configured to automatically update when new releases are available, then no action is required. Your systems will update automatically. If you have disabled automatic updates, then we strongly encourage you to update your cPanel & WHM installations at your earliest convenience.

RELEASES

Continue reading
  5 Hits

Copyright

© Cpanel

5 Hits
MAY
11

cPanel & WHM Version 88 to CURRENT!

We are happy to announce that cPanel, L.L.C. has released cPanel & WHM Version 88 to the CURRENT tier! This newest version brings many quality of life improvements for MySQL, including the added support of MySQL 8. Version 88 also brings Rouncube version 1.4 (with a new responsive theme for mobile devices and CCS compatibility), the addition of ImunifyAV, the leading malware scanning solution, and the ability to upgrade to ImunifyAV+, as well as streamlining of a number of in product interfaces.

Take a look at highlights for this version on our release site, or check out the full release notes. Then, join us on SlackDiscord, or Reddit!

Support for MySQL 8

cPanel & WHM Version 88 brings support for MySQL® 8 for CentOS 7, Red Hat® Enterprise Linux, and CloudLinux servers. New cPanel & WHM Version 88 instances can upgrade to MySQL in WHM’s MySQL or MariaDB Upgrade interface (WHM >> Home >> Software >> MySQL/MariaDB Upgrade) | Read More

Webmail now ships with Roundcube version 1.4

We are updating the Roundcube version in Webmail from version 1.3 to version 1.4 in cPanel & WHM Version 88. Roundcube 1.4 features a new responsive theme for mobile devices, as well as compatibility with the Calendar and Contacts Server (CCS) plugin | Read More

MySQL now streams during account transfers in WHM

When an account is transferred via WHM’s Transfer Tool interface (WHM >> Home >> Transfers >> Transfer Tool) or the Copy an Account From Another Server With an Account Password interface (WHM >> Home >> Transfers >> Copy an Account From Another Server With an Account Password), the system streams the MySQL dump if streaming is available | Read More

Continue reading
  6 Hits

Copyright

© Cpanel

6 Hits
MAY
06

EasyApache 4 May 6 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more. ea-apache2 EA-8809: Ensure that MAX_FD_LIMIT is not exceeded. EA-9047: Update POSTRANS openssl rand calls removing not found /proc entries. EA-9042: Do not …
Original author: Tabby Worthington
  5 Hits

Copyright

© Cpanel

5 Hits
APR
29

EasyApache 4 Apr 29 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more. April 29 ea-cpanel-tools     • ZC-6639: make recommendation verbiage match reality better  .  • ZC-4935: Add …
Original author: Phil Hodges
  5 Hits

Copyright

© Cpanel

5 Hits
APR
22

EasyApache 4 Apr 22 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more.

April 22

EasyApache 4

ea-apache2
     • EA-9010: Patch apache 2.4.43 to fix ssl stapling memory leak

ea-apache24-mod_lsapi
     • EA-8300: remove Provides from SPEC file to allow reinstalls

ea-cpanel-tools
     • EA-8960: Update end-of-life PHP phrase

Continue reading
  5 Hits

Copyright

© Cpanel

5 Hits
APR
15

EasyApache 4 Apr 15 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more.

April 15

EasyApache 4

ea-apache24-mod_lsapi
     • ZC-6114: Add ea-php74 to hardcoded list that rpm/switch_lsapi builds /etc/container/php.handler out of

ea-cpanel-tools
     • EA-8930: Update max_execution_time default to 30

ea-libicu
     • EA-8925: Add ea-libicu packages for PHP 7.4

Continue reading
  5 Hits

Copyright

© Cpanel

5 Hits
APR
08

EasyApache 4 Apr 8 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more.

April 8

EA4

ea-apache2
     • EA-8958: Update ea-apache2 from v2.4.41 to v2.4.43

scl-php56
     • EA-8963: Update scl-php56 libcurl version requirement to match the other PHPs

ea-cpanel-tools
     • ZC-5894: Move PHP.ini directive data to RPM

Continue reading
  5 Hits

Copyright

© Cpanel

5 Hits
APR
01

EasyApache 4 Apr 1 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more.

Apr 1st

EA 4

scl-ruby24-passenger
     • EA-8928: Updated the required version for ea-libcurl
     • EA-8898: Update scl-ruby24-passenger from v5.3.7 to v6.0.4

scl-php54
scl-php55
scl-php56
scl-php70
scl-php71
scl-php72
scl-php73
     • EA-8928: Updated the required version for ea-libcurl

mod_security2
     • EA-8928: Updated the required version for ea-libcurl

Continue reading
  5 Hits

Copyright

© Cpanel

5 Hits
MAR
25

EasyApache 4 Mar 25 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more.

March 25th

ea-apache2

EA-8786: Patch apxs to use the correct value for top_builddirEA-8927: Patch apache 2.4.x httpd for OCSP stapling bugEA-8876: Made ea-apache24 require ea-apache24-mod_headers

ea-apache2-config

ZC-3620: Factor in non-global includes from the include editor

scl-ioncube10

EA-8865: Add php-cli as a dependency

scl-php72
scl-php72-meta

Continue reading
  4 Hits

Copyright

© Cpanel

4 Hits
MAR
25

cPanel & WHM Version 84 Now EOL

March 25, 2020


With last week’s move to STABLE for Version 86, cPanel & WHM Version 84 has reached End of Life. This version will now only be supported by cPanel when upgrading to a supported version.

In accordance with our EOL policy, Version 84 will continue to function on servers where it is already installed. The last release of cPanel & WHM Version 84, 84.0.22, will remain on our mirrors indefinitely. However, no further updates, including fixes for known security flaws, will be provided for Version 84. Older releases of cPanel & WHM will be removed from our mirrors.

We recommend that all customers upgrade any existing installations of cPanel & WHM Version 84 to the most recent version of cPanel & WHM Version 86, which you can read about on https://releases.cpanel.net.

If your server setup complicates the process of upgrading to a supported version of cPanel & WHM (an upgrade blocker list is available at https://go.cpanel.net/blockers), then cPanel is here to help. Simply open a support ticket at https://tickets.cpanel.net/submit so that our knowledgable support team can provide recommendations, upgrade assistance, and more.

Continue reading
  4 Hits

Copyright

© Cpanel

4 Hits
MAR
18

EasyApache 4 Mar 18 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more. 3/18/20 EA4:• ea-nodejs10     • EA-8895: Update ea-nodejs10 from v10.18.1 to v10.19.0 • …
Original author: Phil Hodges
  5 Hits

Copyright

© Cpanel

5 Hits
MAR
18

cPanel & WHM Version 86 to STABLE!

We are happy to announce that cPanel, L.L.C. has released cPanel & WHM Version 86 to the STABLE tier! cPanel & WHM Version 86 introduces a slew of new tools and improvements to the product. With upgrades to EasyApache 4’s OpenSSL version, the introduction of TLS v1.3, a number of new and improved interfaces, a standalone mail server and more, cPanel & WHM is better than ever.

Take a look at highlights for this version on our release site, or check out the full release notes. Then, join us on Discord or Reddit!

Upgrade EasyApache 4’s OpenSSL version to OpenSSL 1.1.1

In cPanel & WHM Version 86, we are upgrading EasyApache 4’s version of OpenSSL to version 1.1.1, enabling the use of Transport Layer Security (TLS) protocol version 1.3. You can select TLSv1.3 in the SSL/TLS Protocols option in WHM’s Global Configuration interface. | Read More

New DNS Zone Manager interface

System Administrators are now able to manage server’s DNS zones with WHM’s DNS Zone Manager interface, making the process of creating and managing DNS zone records simpler. | Read More

LTS Tier Updates

We are improving cPanel & WHM’s LTS tier to automatically update when new LTS versions are available. The Update Preferences interface is being updated to improve setting a release tier and other update settings. | Read More

Continue reading
  4 Hits

Copyright

© Cpanel

4 Hits
MAR
17

cPanel TSR-2020-0002 Full Disclosure

SEC-505 Summary Bandwidth suspensions can be triggered remotely via mail log strings. Security Rating cPanel has assigned this vulnerability a CVSSv3 score of 5.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L Description The regular expression patterns used to match bandwidth log lines in the mail log were not properly anchored. This allowed remote attackers to generate …
Original author: Phil Hodges
  4 Hits

Copyright

© Cpanel

4 Hits
MAR
16

cPanel TSR-2020-0002 Announcement

cPanel has released new builds for all public update tiers. These updates provide targeted changes to address security concerns with the cPanel & WHM product. These builds are currently available to all customers via the standard update system.

cPanel has rated these updates as having CVSSv3 scores ranging from 2.2 to 5.8.

Information on cPanel’s security ratings is available at https://go.cpanel.net/securitylevels.

If your deployed cPanel & WHM servers are configured to automatically update when new releases are available, then no action is required. Your systems will update automatically. If you have disabled automatic updates, then we strongly encourage you to update your cPanel & WHM installations at your earliest convenience.

RELEASES

Continue reading
  5 Hits

Copyright

© Cpanel

5 Hits
MAR
02

cPanel Announces Comprehensive New Security Feature Addition, Making Server Security More Robust

As a leader in the hostingmanagement industry, cPanel continuously serves Web Hosting Providers and System Administrators with multiple integrated options to protect their servers. 

Houston, TX – February 3, 2020 – cPanel, L.L.C., an industry-leading hosting server management solution for the past 20 years, announced it is adding ImunifyAV+ to the suite of server security applications that integrates directly into its flagship product. The product extensions allow systems administrators to protect their installations and defend against cybersecurity threats directly from their cPanel & WHM dashboard.

ImunifyAV+ is now available for cPanel & WHM users, complementing the existing ImunifyAV application, adding extra functionality to allow infected files to be cleaned with a single click. This one-click removal makes blocking and preventing malicious code from spreading across a server environment simple.

Knowing how vital server security is, cPanel began offering CloudLinux’s ImunifyAV at no extra cost and provided their partners and customers the choice to add Imunify360, a robust security suite, to all accounts for a small monthly fee. ImunifyAV is a scanner that identifies malware and viruses, and Imunify360 is a complete security suite offering scanning, cleanup, firewalls, and proactive defenses.

“We’re proud to offer even more security options so our customers can protect their IT infrastructure,” said Kenneth Power, Vice President of Product Development at cPanel. “We now offer multiple solutions to both identify and solve security problems faced by the industry every day, providing peace of mind that servers are safeguarded from destructive virtual attacks.”

Continue reading
  4 Hits

Copyright

© Cpanel

4 Hits
FEB
26

EasyApache 4 Feb 26 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on Discord or Reddit to talk about this update and much more.

2020-02-26

ea-openssl
     • EA-8870: Update ea-openssl from v1.0.2t to v1.0.2u

ea-profiles-cpanel
     • EA-8864: Add php73 to the mpm_itk and worker profiles

ea-tomcat85
     • EA-8875: Update ea-tomcat85 from v8.5.50 to v8.5.51

libcurl
     • EA-8843: Update libcurl from v7.67.0 to v7.68.0

Continue reading
  4 Hits

Copyright

© Cpanel

4 Hits
FEB
18

cPanel & WHM Version 86 to RELEASE!

We are happy to announce that cPanel, L.L.C. has released cPanel & WHM Version 86 to the RELEASE tier! cPanel & WHM Version 86 introduces a slew of new tools and improvements to the product. With upgrades to EasyApache 4’s OpenSSL version, the introduction of TLS v1.3, a number of new and improved interfaces, a standalone mail server and more, cPanel & WHM is better than ever.

Take a look at highlights for this version on our release site, or check out the full release notes. Then, join us on SlackDiscord, or Reddit!

Streamlined Directory Privacy interface

In cPanel & WHM Version 86, we are adding the Actions column to cPanel’s Directory Privacy interface allowing system administrators to set the directory privacy permissions for all of the subdirectories within a directory. | Read More

File Manager access when account is at full disk space

cPanel users who have reached their account disk space limit are now able to use cPanel’s File Manager to delete files. | Read More

AutoSSL improvements for DNS Certificate Authority Authorization records

We are improving the AutoSSL feature’s automatic creation of CAA records to now recognize subdomains and wildcard domains, as well as creating all of the CAA records needed to ensure that AutoSSL will issue certificates. | Read More

Continue reading
  11 Hits

Copyright

© Cpanel

11 Hits
FEB
03

cPanel & WHM Version 86 to CURRENT!

We are happy to announce that cPanel, L.L.C. has released cPanel & WHM Version 86 to the CURRENT tier! cPanel & WHM Version 86 introduces a slew of new tools and improvements to the product. With upgrades to EasyApache 4’s OpenSSL version, the introduction of TLS v1.3, a number of new and improved interfaces, a standalone mail server and more, cPanel & WHM is better than ever.

Take a look at highlights for this version on our release site, or check out the full release notes. Then, join us on SlackDiscord, or Reddit!

Upgrade EasyApache 4’s OpenSSL version to OpenSSL 1.1.1

In cPanel & WHM Version 86, we are upgrading EasyApache 4’s version of OpenSSL to version 1.1.1, enabling the use of Transport Layer Security (TLS) protocol version 1.3. You can select TLSv1.3 in the SSL/TLS Protocols option in WHM’s Global Configuration interface. | Read More

New DNS Zone Manager interface

System Administrators are now able to manage server’s DNS zones with WHM’s DNS Zone Manager interface, making the process of creating and managing DNS zone records simpler. | Read More

LTS Tier Updates

We are improving cPanel & WHM’s LTS tier to automatically update when new LTS versions are available. The Update Preferences interface is being updated to improve setting a release tier and other update settings. | Read More

Continue reading
  6 Hits

Copyright

© Cpanel

6 Hits
JAN
29

EasyApache 4 Jan 29 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! Take a look at some highlights below, and then join us on SlackDiscord, or Reddit to talk about this update and much more.

EA4

ea-apache2
     • COBRA-10700: Optimize finding a module

ea-apache2-config
     • EA-8629: Prevent caching of defaultwebpage.cgi redirect

ea-cpanel-tools
     • EA-8784: Add PHP 7.1 to EOL recommendations

Continue reading
  14 Hits

Copyright

© Cpanel

14 Hits
JAN
22

EasyApache 4 Jan 22 Release

We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! This release is focused entirely on updating ea-openssl requirements to OpenSSL v1.1.1. Take a look at some highlights below, and then join us on Slack, Discord, or Reddit to talk about this update and much more. apr     • …
Original author: Phil Hodges
  8 Hits

Copyright

© Cpanel

8 Hits
Advertisement