Browse Tag: patch

Autoupdate problems after 2018-03-21 release fix

We’ve noticed that our release on 2018-03-21 may have broken autoupgrade feature on selected installations. We’ve just released new patch release (2018-03-22) to address this problem, but if you are experiencing problem where screen hangs on the message “Update progress…” below you can find information how to easily fix it.
Continue Reading

HostBill Security Patch

Within last few hours we’ve been notified about potential LFD security threat that affects HostBill installations, caused by one of used libraries.
Although its severity really depends on server configuration we cannot leave our users at risk – we take security very seriously.

Download patch from here: (for version 3.8).

Patching process is simple – extract archive contents in main HostBill directory, no db updates/install is required.

HostBill 3.8.0 archive available in our client area has also been patched, please upgrade to latest version if you’re using < 3.8

HostBill Security Patch for 2.X: Critical Security Issue

Dear Clients!
HostBill 2.x security patch.
Last night one of our clients notified us about potential security threat affecting HostBill versions 2.x, which may allow to access admin area with previously stolen session cookie.

Please download this patch as soon as possible:
To apply patch please extract archive contents in your HostBill directory, or upload its contents directly to your install (there is only one file that requires overwriting).

We’re not aware of any installation compromised other than reported last night.
If you have questions or any concerns please feel free to contact us. We do apologize for any inconvenience.

Note: 2.8 version download package contains this patch by default from now on, 2.9 version that is scheduled to release next week will also contain it.

Full OnApp 2.1RC4 module hotfix

HostBill users recently reported issue with OnApp 2.1RC4 module.

When creating billing plan using API it’s not possible to create machine as a client, as OnApp throws HTTP500 + bad response error.

We’ve created patch for OnApp Full-Featured module 2.1. To apply it please download your copy of module again from our client area, and extract archive contents in main HostBill directory.

Patch drawbacks:
This patch hard-codes clients’ cpu-shares to unlimited (it’s not setting cpu-shares limit in OnApp), and for new machines created from HostBill client area it sets cpu-share to 1, despite of slider settings.

Please note:
This is temporary patch, once OnApp will fix this bug with next RC/Stable version we will upload regular version of module with working CPU-Shares limit.