{"id":7967,"date":"2015-01-27T13:36:00","date_gmt":"2015-01-27T19:36:00","guid":{"rendered":"https:\/\/wpengine.com\/?p=7967"},"modified":"2024-06-06T08:44:39","modified_gmt":"2024-06-06T13:44:39","slug":"addressing-ghost-vulnerability","status":"publish","type":"post","link":"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/","title":{"rendered":"Addressing The GHOST Vulnerability"},"content":{"rendered":"<p>Here at WP Engine, our customers entrust us with the security of their WordPress sites, and with that trust comes great responsibility. It\u2019s because of that responsibility that we are informing our customers today of actions we are taking to our platform.<\/p>\n<p>Qualys researchers this morning announced a <a href=\"http:\/\/www.openwall.com\/lists\/oss-security\/2015\/01\/27\/9\">glibc vulnerability<\/a>, nicknamed GHOST, that involves a buffer overflow that is reachable both locally and remotely using the <code>gethostbyname*()<\/code> functions in <a href=\"http:\/\/en.wikipedia.org\/wiki\/GNU_C_Library\">glibc<\/a>.<\/p>\n<p>Upon initial investigation, we have found that this vulnerability affects a subset of our customers. Our Technical Operations team is currently in the process of upgrading all affected servers to a non-vulnerable version of glibc.<\/p>\n<p>Once the patch has been applied, a server reboot may be required. We will do our best to make sure we impact as few customers as possible during this upgrade, however customer security is our top priority, so any required reboots will be done as soon as possible.<\/p>\n<p>Should you have any concerns, please do not hesitate to <a href=\"https:\/\/my.wpengine.com\/support\">contact our Technical Support team<\/a>.<\/p>\n<p><em>Be sure to subscribe to our status page for updates:\u00a0<a href=\"https:\/\/wpenginestatus.com\/\">https:\/\/wpenginestatus.com\/<\/a>.<\/em><\/p>\n<hr \/>\n<address><a href=\"https:\/\/wpengine.com\/wp-content\/uploads\/2014\/12\/cosper-2014.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft wp-image-6579 size-thumbnail\" src=\"https:\/\/wpengine.com\/wp-content\/uploads\/2014\/12\/cosper-2014-150x150.jpg\" alt=\"Jason Cosper\" width=\"150\" height=\"150\" \/><\/a><a href=\"https:\/\/twitter.com\/boogah\" target=\"_blank\" rel=\"noopener\">Jason Cosper<\/a> works as the Developer Advocate for WP Engine. He loves digging into interesting problems and learning new things. Currently, he spends most of his days getting elbows deep in huge messes and doling out WordPress optimization advice. In his spare time, Cosper enjoys spending time with his wife and very tiny dog, grilling meats, sampling assorted whiskeys, writing cranky tweets about the Lakers and brewing coffee.<\/address>\n","protected":false},"excerpt":{"rendered":"<p>Here at WP Engine, our customers entrust us with the security of their WordPress sites, and with that trust comes great responsibility. It\u2019s because of that responsibility that we are informing our customers today of actions we are taking to our platform. Qualys researchers this morning announced a glibc vulnerability, nicknamed GHOST, that involves a<span class=\"tile__ellipses\">&hellip;<\/span><span class=\"tile__ellipses--animated\"><\/span><\/p>\n","protected":false},"author":12,"featured_media":7969,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[85],"tags":[],"class_list":["post-7967","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security-2"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v20.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Addressing The GHOST Vulnerability | WP Engine<\/title>\n<meta name=\"description\" content=\"Learn how WP Engine addresses the Ghost vulnerability problem. Understand the steps taken to ensure the security and integrity and security of your WordPress site.\" \/>\n<meta name=\"robots\" content=\"noindex, follow\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Addressing The GHOST Vulnerability | WP Engine\" \/>\n<meta property=\"og:description\" content=\"Learn how WP Engine addresses the Ghost vulnerability problem. Understand the steps taken to ensure the security and integrity and security of your WordPress site.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/\" \/>\n<meta property=\"og:site_name\" content=\"WP Engine\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/wpengine\" \/>\n<meta property=\"article:published_time\" content=\"2015-01-27T19:36:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-06-06T13:44:39+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/wpengine.com\/resources\/wp-content\/uploads\/2015\/01\/8528914991_43bd0cafc1_o-compressor.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1500\" \/>\n\t<meta property=\"og:image:height\" content=\"750\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Jason Cosper\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@wpengine\" \/>\n<meta name=\"twitter:site\" content=\"@wpengine\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Jason Cosper\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/\",\"url\":\"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/\",\"name\":\"Addressing The GHOST Vulnerability | WP Engine\",\"isPartOf\":{\"@id\":\"https:\/\/wpengine.com\/resources\/#website\"},\"datePublished\":\"2015-01-27T19:36:00+00:00\",\"dateModified\":\"2024-06-06T13:44:39+00:00\",\"author\":{\"@id\":\"https:\/\/wpengine.com\/resources\/#\/schema\/person\/b94cce7a7a7735bb6773209205593e5c\"},\"description\":\"Learn how WP Engine addresses the Ghost vulnerability problem. Understand the steps taken to ensure the security and integrity and security of your WordPress site.\",\"breadcrumb\":{\"@id\":\"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/wpengine.com\/resources\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Addressing The GHOST Vulnerability\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/wpengine.com\/resources\/#website\",\"url\":\"https:\/\/wpengine.com\/resources\/\",\"name\":\"WP Engine\",\"description\":\"Managed Hosting for WordPress\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/wpengine.com\/resources\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/wpengine.com\/resources\/#\/schema\/person\/b94cce7a7a7735bb6773209205593e5c\",\"name\":\"Jason Cosper\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/wpengine.com\/resources\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/86506a1ad877216ba536a237bb92ad01829cdae7c5d4dad6451ddb36819e59d0?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/86506a1ad877216ba536a237bb92ad01829cdae7c5d4dad6451ddb36819e59d0?s=96&d=mm&r=g\",\"caption\":\"Jason Cosper\"},\"description\":\"Jason Cosper works as a Developer Advocate for WP Engine. Honestly, that\u2019s just a fancy way of saying \u201cI get paid to chat with people about WordPress.\u201d You can follow him on Twitter @boogah\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Addressing The GHOST Vulnerability | WP Engine","description":"Learn how WP Engine addresses the Ghost vulnerability problem. Understand the steps taken to ensure the security and integrity and security of your WordPress site.","robots":{"index":"noindex","follow":"follow"},"og_locale":"en_US","og_type":"article","og_title":"Addressing The GHOST Vulnerability | WP Engine","og_description":"Learn how WP Engine addresses the Ghost vulnerability problem. Understand the steps taken to ensure the security and integrity and security of your WordPress site.","og_url":"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/","og_site_name":"WP Engine","article_publisher":"https:\/\/www.facebook.com\/wpengine","article_published_time":"2015-01-27T19:36:00+00:00","article_modified_time":"2024-06-06T13:44:39+00:00","og_image":[{"width":1500,"height":750,"url":"https:\/\/wpengine.com\/resources\/wp-content\/uploads\/2015\/01\/8528914991_43bd0cafc1_o-compressor.jpg","type":"image\/jpeg"}],"author":"Jason Cosper","twitter_card":"summary_large_image","twitter_creator":"@wpengine","twitter_site":"@wpengine","twitter_misc":{"Written by":"Jason Cosper","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/","url":"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/","name":"Addressing The GHOST Vulnerability | WP Engine","isPartOf":{"@id":"https:\/\/wpengine.com\/resources\/#website"},"datePublished":"2015-01-27T19:36:00+00:00","dateModified":"2024-06-06T13:44:39+00:00","author":{"@id":"https:\/\/wpengine.com\/resources\/#\/schema\/person\/b94cce7a7a7735bb6773209205593e5c"},"description":"Learn how WP Engine addresses the Ghost vulnerability problem. Understand the steps taken to ensure the security and integrity and security of your WordPress site.","breadcrumb":{"@id":"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/wpengine.com\/resources\/addressing-ghost-vulnerability\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/wpengine.com\/resources\/"},{"@type":"ListItem","position":2,"name":"Addressing The GHOST Vulnerability"}]},{"@type":"WebSite","@id":"https:\/\/wpengine.com\/resources\/#website","url":"https:\/\/wpengine.com\/resources\/","name":"WP Engine","description":"Managed Hosting for WordPress","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/wpengine.com\/resources\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/wpengine.com\/resources\/#\/schema\/person\/b94cce7a7a7735bb6773209205593e5c","name":"Jason Cosper","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/wpengine.com\/resources\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/86506a1ad877216ba536a237bb92ad01829cdae7c5d4dad6451ddb36819e59d0?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/86506a1ad877216ba536a237bb92ad01829cdae7c5d4dad6451ddb36819e59d0?s=96&d=mm&r=g","caption":"Jason Cosper"},"description":"Jason Cosper works as a Developer Advocate for WP Engine. Honestly, that\u2019s just a fancy way of saying \u201cI get paid to chat with people about WordPress.\u201d You can follow him on Twitter @boogah"}]}},"acf":[],"_links":{"self":[{"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/posts\/7967","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/comments?post=7967"}],"version-history":[{"count":0,"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/posts\/7967\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/media\/7969"}],"wp:attachment":[{"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/media?parent=7967"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/categories?post=7967"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wpengine.com\/resources\/wp-json\/wp\/v2\/tags?post=7967"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}