Announcements

CVE-2026-29205 and cpdavd

  • 14th May 2026
Yesterday's cPanel update wasn't enough, apparently cpdavd which provides the contacts and calendar services in cPanel hosting is still exploitable, and it's only a matter of time before someone finds it, so we're closing ports 2079 and 2080 for now on the advice of cPanel, apologies for the inconvenience. What a fun couple of weeks this has been ...
Continue reading

DirtyFrag CVE-2026-43284, CVE-2026-43500 - server reboots

  • 8th May 2026
Now that the patches are out for DirtyFrag as per https://almalinux.org/blog/2026-05-07-dirty-frag/ we will begin updating the kernel on all servers and rebooting over the next few days. Please note that all servers had mitigation put in place immediately (within an hour or so) of the vulnerabilty first being discovered, so don't worry that ...
Continue reading