LimeWire 4.8 release
p2pnet.net News:- LimeWire versions prior to the recent 4.8 release contained a potentially serious security flaw pointed out by Cornell researchers using the applications’s open source code themselves, LimeWire coo Greg Bildson has told p2pnet.
"It was possible to craft an HTTP request for an arbitrary file from the computer of an active user," he says.
But, "We addressed the problems as soon as we knew about them by quickly creating patches."
Bildson says LimeWire has been shipping 4.8 for two weeks but, "if you’re a LimeWire user and you haven’t yet upgraded to version 4.8, please do so."
Something you think we should know? tips[at]p2pnet.net
============
See:-
4.8 – LimeWire 4.8.1 released, p2pnet, March 11, 2005




