Upgrade to Wordpress 2.3.3 Now!
I’ve been asked by some Blokesters if we should upgrade to Wordpress. Admittedly I was hesitant to do it because I had just moved over to Wordpress and got everything working great.
I was also concerned that it might knock out some of my plugins which I have been experimenting with. Like they say “if it ain’t broke… don’t fix it“. So I decided to put it off for awhile.
Well after reading some of the security warnings I’ve decided to take the plunge and upgrade, and so far (knock on wood) I’ve seen no problems.
WordPress 2.3.3 is an urgent security release. If you have registration enabled a flaw was found in the XML-RPC implementation such that a specially crafted request would allow a user to edit posts of other users on that blog. In addition to fixing this security flaw, 2.3.3 fixes a few minor bugs…
The security fix is easy. Just download the fixed version of xmlrpc.php and copy it over your existing “xmlrpc.php” file in your cPanel. The “xmlrpc.php” file can be found in the public_html/ folder in a normal Wordpress installation. Also, as always make a backup first before messing with your Wordpress files.
I contacted my blog host company Bluefur and within 5 minutes they completed the upgrade. I must say that I’m very impressed with their support and if you didn’t take advantage of their $10/year lifetime offer then you should have.
Hindsight is 20/20 eh? ![]()
Filed under: Announcements, Security, Site News, Wordpress
What Next? Read More Tips From BLOGBloke:
Keep in touch with BLOGBloke and don't miss another blog tip:













Opinions? (click here to jump to the comments form)








Upgrading WordPress is not too hard once you get the hang of it.
Shameless Promotion: How to upgrade your WordPress installation
Does Bloke and other Blokesters a method they know ?
Jaffer’s last blog post..Books you will find at my local library - Part II
[
Reply..]
Shame on you Jaffer.
The security fix is easy. Just download the fixed version of xmlrpc.php and copy it over your existing “xmlrpc.php” file in your cPanel. The “xmlrpc.php” file can be found in the ‘public_html/‘ folder in a normal Wordpress installation.
You can find more info about the security fix here. Also, as always make a backup first before messing with your Wordpress files.
[
Reply..]
Bloke — OK, so I submitted a help ticket to my host to see if they’ll do the upgrade for me. If not, I’m heading over to Jaffer’s place. Jaffer, will you let me cry on your shoulder if I screw it up? I’m not kidding. I actually cried during my move to WordPress. The guy who was helping me just about threw a brick at my head. I think it’s just because men don’t know how to handle crying women.
Kathy’s last blog post..If You Missed the Last Meeting…
[
Reply..]
Bloke: Now that the most useful tip we all need ! You must put that in the article.
Kathy: I still want you to be careful when copying the files. You don’t want to touch the wp-content folder and the wp-config file else you’ll loose your themes, plugins and customizations.
You can copy away the rest !
Jaffer’s last blog post..Books you will find at my local library - Part II
[
Reply..]
Jaffer, I already put a link to the Wordpress doc in the quote above that has the file for download with instructions. Nevertheless I’ve added it to the post because I want to keep you happy.
Regarding the other stuff that you mention, it shouldn’t be necessary to fool with those folders for this upgrade and I don’t want to frighten Kathy any more than she already is. But your advice is always good to follow — i.e. don’t fool with something you’re not sure of, AND always make a backup first.
Cheers!
[
Reply..]
In the Bluefur Cold Case mystery files, I contacted my blog host company Bluefur two months ago about the WordPress 2.3.2 upgrade and Bluefur has not completed both upgrades: WordPress 2.3.2 ( 61 days ago) and WordPress 2.3.3 (24 days ago).
Bloke, who do you call for fast results?
Debbie Dolphin’s last blog post..To the Lighthouse Excellent Award
[
Reply..]
That’s odd. First off, I’m on the mailing list so I get emails from blog@bluefur.com notifying me of updates such as this one. I called them on the phone and they said they have a different department that handles it. They suggested that I create a ticket for the request and/or just email them. So I emailed them at blog@bluefur.com and within a few minutes it was done.
I recommend trying both ways.
[
Reply..]
Thank you, BB!
I will eMail them to see what happens.
[
Reply..]
Oh yeah DD, I forgot to mention that you will need to give them your URL address and your cPanel username.
[
Reply..]
I upgraded about 2 weeks ago. It wasn’t bad at all. I was expecting for a few of my plugins to stop working but everything seems good.
Curtis’s last blog post..First harvest, what did you harvest first last year?
[
Reply..]
Bloke — I did as instructed. My admin panel says I still need to upgrade, though. I needn’t worry, though, should I?
Kathy’s last blog post..Do I Have OCD? Do I Have OCD? Do I Have OCD?
[
Reply..]
Hmm, are you sure you copied over the original xmlrpc.php file? Did you set it’s permissions to be copied over? Have you read all of the Wordpress documentation on the upgrade? Have you asked your blog host provider to help you? There must be a piece of the puzzle still missing.
[
Reply..]
Thanks Dev! http://bit.ly/2pkIJb
awesome site brotha http://bit.ly/1pXPfp
awesome site brotha http://bit.ly/1jshln
@Gaia Herbs, some look like downtown Las Vegas in the evening. http://bit.ly/2ub7iQ
@Gaia Herbs, some look like downtown Las Vegas in the evening. http://bit.ly/2ub7iQ
@CFI, @hospitalera … my head was spinning when I wrote it
http://bit.ly/1CQix9
RT @BLOGBloke: 10 Reasons Why I Don’t Like Your Blog http://bit.ly/2TRLSx
10 Reasons Why I Don’t Like Your Blog http://bit.ly/2TRLSx
@Humayon, if you are just a blogspot user then you don't need to bother with dns settings. But I still recommend ge… http://bit.ly/1fDYre
@hari saryono, I wrote an article about why we should not play into terrorists hands by linking to these horrific v… http://bit.ly/2aTKBw
@InternetMarketingMentor, here's another analogy for you. Your blog is your permanent home and social networks are … http://bit.ly/4hZtE
Optimize Your Blog - Making Your Blog Search Engine Friendly http://bit.ly/4A9Go5
@Mike, glad you liked it. If you're serious about blogging then Wordpress is the way to go. http://bit.ly/33GQUp
via @BLOGBloke: Hi There! Thanks for following. Why not ask me a question or for more blog tips visit http://tinyurl.com/5zjajb. Cheers!
@Michelle, you do not need a subdomain for it to work. A subdomain is also a bad idea for SEO. You need to go over … http://bit.ly/5Z3vbE
@Justin Gill .. thanks for saying so Justin. It always feels great to hear from another happy customer.
Cheers! http://bit.ly/5Z3vbE
blog hating at http://www.blogbloke.com/10-reasons-why-i-dont-like-your-blog was just pinged to 91 Services!
@Kay, I never thought of it that way http://bit.ly/1CQix9
@humglum http://www.blogbloke.com/moving-wordpress-blogger/ basically… no. doesnt look like it'll happen.
@BLOGBloke,
I decided to get rid of the Blogger redirect as the redirect via modification to .htaccess works, t… http://bit.ly/5Z3vbE
@Michelle, redirect speeds will depend on the blog host's servers and your internet connection. You only need to pa… http://bit.ly/5Z3vbE
@drugi, you mean "you can please some of the people all of the time and all of the people some of the time, but you… http://bit.ly/4CvJh7
Finding Your Blog Voice http://bit.ly/5LD5kQ
@zarazek, don't get your domains through Wordpress. Use GoDaddy or something similar. http://bit.ly/1fDYre
Saw an advertisement for Moving Blogger to Wordpress Service. Why not save your money and read my free guide? http://bit.ly/6rFYFE They do
hmm.. informative )) http://bit.ly/6krJX6
I should notify my girlfriend about your post. http://bit.ly/6iqFfC
hello everybody, how are you all doing.i am liking this web sight i might start staying on it more. me i stay sick … http://bit.ly/6krJX6
@Cdathy Tibbles, I host images on my wordpress.com account. Let me know it goes. I always like to hear from happy c… http://bit.ly/5Z3vbE
@BLOGBloke, Yeh, I had a domain from a different comapny but Wordpress said I still had pay them to be able to link… http://bit.ly/1fDYre
@zarazek, so if I understand you correctly your blog was being hosted by Wordpress and then they insisted on chargi… http://bit.ly/1fDYre
I'm very happy with the refinements I made to the blog. What do you think? http://www.blogbloke.com/
How to Produce Your Own Podcast http://ff.im/-dm32o
"10 Reasons Why Twitter Is So Popular" ( http://bit.ly/8CM5gX )
Updated my Blokester Buttons for 2010. Grab yours now .. http://www.blogbloke.com/introducing-new-blokester-buttons/
How to Make Professional Podcast Videos for Your Blog (Vlog) http://bit.ly/7EHvN8
RT @projournalist: How to Make Professional Podcast Videos for Your Blog (Vlog) http://bit.ly/7EHvN8
RT @journtoolbox RT @projournalist: How to Make Professional Podcast Videos for Your Blog (Vlog) http://bit.ly/7EHvN8
@BLOGBloke - really ok - am trying to pull off this from your blog http://bit.ly/5Zv5kW (thank you so much for documenting this - it rocks)
@BLOGBloke - do you think I could use this service to redirect or park my domain like you mentioned in http://bit.ly/5Zv5kW
Great tutorial on migrating your blog from #blogger to #wordpress. http://bit.ly/Nlr2k
@10timesone .. have you read this http://www.blogbloke.com/migrating-redirecting-blogger-wordpress-htaccess-apache-best-method/
@FijiLomalagi my email is at the bottom of my blog http://www.blogbloke.com/
@Kwame, you will have to play around with the Apache code .. http://bit.ly/5Z3vbE
@Ankit_A see if this helps.. http://bit.ly/Nlr2k
@drewmillikin My technical skills are limited, but I found this post to be very helpful: http://bit.ly/7LY764. My advice: pull the trigger.
@Adam Johnson .. it was my pleasure and glad it worked for you .. http://bit.ly/5Z3vbE
@gopmommy Your domain name redirection is done on your hosting service. Check this tutorial http://is.gd/8TXkI
@stepfanieb Check #6. http://bit.ly/Nlr2k
RT @BLOGBlokeTips How to Make Professional Podcast Videos for Your Blog (Vlog) http://bit.ly/2JgxLd