pkgsrc-Bugs archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

PR/46609 CVS commit: pkgsrc/net/tor



The following reply was made to PR pkg/46609; it has been noted by GNATS.

From: "Hauke Fath" <hauke%netbsd.org@localhost>
To: gnats-bugs%gnats.NetBSD.org@localhost
Cc: 
Subject: PR/46609 CVS commit: pkgsrc/net/tor
Date: Sun, 17 Jun 2012 12:09:41 +0000

 Module Name:   pkgsrc
 Committed By:  hauke
 Date:          Sun Jun 17 12:09:41 UTC 2012
 
 Modified Files:
        pkgsrc/net/tor: Makefile distinfo
 
 Log Message:
 Minor bugfix update. From the changelog:
 
 Changes in version 0.2.2.37 - 2012-06-06
   Tor 0.2.2.37 introduces a workaround for a critical renegotiation
   bug in OpenSSL 1.0.1 (where 20% of the Tor network can't talk to itself
   currently).
 
   o Major bugfixes:
     - Work around a bug in OpenSSL that broke renegotiation with TLS
       1.1 and TLS 1.2. Without this workaround, all attempts to speak
       the v2 Tor connection protocol when both sides were using OpenSSL
       1.0.1 would fail. Resolves ticket 6033.
     - When waiting for a client to renegotiate, don't allow it to add
       any bytes to the input buffer. This fixes a potential DoS issue.
       Fixes bugs 5934 and 6007; bugfix on 0.2.0.20-rc.
     - Fix an edge case where if we fetch or publish a hidden service
       descriptor, we might build a 4-hop circuit and then use that circuit
       for exiting afterwards -- even if the new last hop doesn't obey our
       ExitNodes config option. Fixes bug 5283; bugfix on 0.2.0.10-alpha.
 
   o Minor bugfixes:
     - Fix a build warning with Clang 3.1 related to our use of vasprintf.
       Fixes bug 5969. Bugfix on 0.2.2.11-alpha.
 
   o Minor features:
     - Tell GCC and Clang to check for any errors in format strings passed
       to the tor_v*(print|scan)f functions.
 
 Patch submitted by Christian Sturm, fixes PR pkg/46609.
 
 
 To generate a diff of this commit:
 cvs rdiff -u -r1.86 -r1.87 pkgsrc/net/tor/Makefile
 cvs rdiff -u -r1.53 -r1.54 pkgsrc/net/tor/distinfo
 
 Please note that diffs are not public domain; they are subject to the
 copyright notices on the relevant files.
 


Home | Main Index | Thread Index | Old Index