Andrew Lewman commited on 2011-01-17 17:16:08
Zeige 1 geänderte Dateien mit 10 Einfügungen und 27 Löschungen.
| ... | ... |
@@ -130,33 +130,16 @@ |
| 130 | 130 |
<table> |
| 131 | 131 |
<tr> |
| 132 | 132 |
<td> |
| 133 |
- <div class="calendar"><span class="month">Dec</span><br><span class="day">17</span></div> |
|
| 134 |
- <p>The latest stable Tor version, 0.2.1.28, is <a |
|
| 135 |
- href="<blog>/tor-02128-released-security-patches">released</a>. |
|
| 136 |
- This version does some code cleanup to reduce the risk of |
|
| 137 |
- remotely exploitable bugs. Thanks to Willem Pinckaers for |
|
| 138 |
- notifying us of the issue. The Common Vulnerabilities |
|
| 139 |
- and Exposures project has assigned CVE-2010-1676 to |
|
| 140 |
- this issue.</p> |
|
| 141 |
- </td> |
|
| 142 |
- </tr> |
|
| 143 |
- <tr> |
|
| 144 |
- <td> |
|
| 145 |
- <div class="calendar"><span class="month">Nov</span><br><span class="day">23</span></div> |
|
| 146 |
- <p>The latest stable Tor version, 0.2.1.27, is |
|
| 147 |
- <a href="<blog>/tor-02127-released">released</a>. |
|
| 148 |
- This version makes relays work with OpenSSL 0.9.8p and |
|
| 149 |
- 1.0.0.b --yet another OpenSSL security patch broke its |
|
| 150 |
- compatibility with Tor. We also took this opportunity |
|
| 151 |
- to fix several crash bugs, integrate a new directory |
|
| 152 |
- authority, and update the bundled GeoIP database. |
|
| 153 |
- If you operate a relay, please upgrade.</p> |
|
| 154 |
- </td> |
|
| 155 |
- </tr> |
|
| 156 |
- <tr> |
|
| 157 |
- <td> |
|
| 158 |
- <div class="calendar"><span class="month">Nov</span><br><span class="day">16</span></div> |
|
| 159 |
- <p>Tor announces our <a href="<blog>2009-annual-report">2009 Annual Report</a>.</p> |
|
| 133 |
+ <div class="calendar"><span class="month">Jan</span><br><span class="day">17</span></div> |
|
| 134 |
+ <p>The latest stable Tor version, 0.2.1.29, is <a |
|
| 135 |
+ href="http://archives.seul.org/or/announce/Jan-2011/msg00000.html">released</a>. |
|
| 136 |
+ Tor 0.2.1.29 continues our recent code security audit |
|
| 137 |
+ work. The main fix resolves a remote heap overflow |
|
| 138 |
+ vulnerability that can allow remote code execution. Other |
|
| 139 |
+ fixes address a variety of assert and crash bugs, |
|
| 140 |
+ most of which we think are hard to exploit remotely. |
|
| 141 |
+ All Tor users should upgrade. |
|
| 142 |
+ </p> |
|
| 160 | 143 |
</td> |
| 161 | 144 |
</tr> |
| 162 | 145 |
</table> |
| 163 | 146 |