summaryrefslogtreecommitdiff
path: root/changes/security_bug
diff options
context:
space:
mode:
authorRoger Dingledine <arma@torproject.org>2010-12-16 16:59:12 -0500
committerRoger Dingledine <arma@torproject.org>2010-12-16 16:59:12 -0500
commit975ffe439889300783e0607dd20fce550f418ff5 (patch)
tree52cd8a4410e5d69ecd627b7ad25d2973ba7d3362 /changes/security_bug
parent3c3b1d14fd1031c244c62fd16dac0dff53cb069f (diff)
parentb0def605a52b3acce1cb212f270b184d72f237f5 (diff)
downloadtor-975ffe439889300783e0607dd20fce550f418ff5.tar.gz
tor-975ffe439889300783e0607dd20fce550f418ff5.zip
Merge commit 'nickm/fix_security_bug_021' into maint-0.2.1
Diffstat (limited to 'changes/security_bug')
-rw-r--r--changes/security_bug5
1 files changed, 5 insertions, 0 deletions
diff --git a/changes/security_bug b/changes/security_bug
new file mode 100644
index 0000000000..990beee506
--- /dev/null
+++ b/changes/security_bug
@@ -0,0 +1,5 @@
+ o Major bugfixes:
+ - Fix a remotely exploitable bug that could be used to crash instances
+ of Tor remotely by overflowing on the heap. Remove-code execution
+ hasn't been confirmed, but can't be ruled out. Obviously, everyone
+ should upgrade. Bugfix on the 0.1.1 series and later.