Page MenuHomeSolus

Update tor to v0.3.2.10 to resolve multiple CVEs:
ClosedPublic

Authored by As4fN1v on Jan 12 2018, 7:06 PM.

Details

Summary
  • CVE-2018-0490: remote crash vulnerability against directory authorities
  • CVE-2018-0491: remote relay crash

Changelog

Signed-off by: Asaf Niv <asafniv511@gmail.com>

Test Plan

Some browsing.

Diff Detail

Repository
R3054 tor
Lint
Automatic diff as part of commit; lint not applicable.
Unit
Automatic diff as part of commit; unit tests not applicable.

Event Timeline

As4fN1v created this revision.Jan 12 2018, 7:06 PM
As4fN1v edited the summary of this revision. (Show Details)Jan 12 2018, 7:08 PM
As4fN1v edited the test plan for this revision. (Show Details)
As4fN1v updated this revision to Diff 6008.Mar 10 2018, 2:39 PM
  • Update to v0.3.2.10
As4fN1v retitled this revision from Update tor to v0.3.2.9 to Update tor to v0.3.2.10.Mar 10 2018, 2:40 PM
As4fN1v edited the summary of this revision. (Show Details)
As4fN1v updated this revision to Diff 6009.Mar 10 2018, 2:41 PM

Fixed file modes

As4fN1v updated this revision to Diff 6010.Mar 10 2018, 2:44 PM
  • somehow this made phabricator ignore files/
joebonrichie requested changes to this revision.Mar 10 2018, 4:24 PM
joebonrichie added a subscriber: joebonrichie.

Why did you change the permissions of the files? They should all be 00644

This revision now requires changes to proceed.Mar 10 2018, 4:24 PM
As4fN1v updated this revision to Diff 6064.Mar 11 2018, 8:32 PM
This comment was removed by As4fN1v.

Why did you change the permissions of the files? They should all be 00644

When I change files to 00644, git just doesn't commit them for some reason.

sunnyflunk accepted this revision.Mar 12 2018, 2:58 AM
sunnyflunk retitled this revision from Update tor to v0.3.2.10 to Update tor to v0.3.2.10 to resolve multiple CVEs:.
sunnyflunk edited the summary of this revision. (Show Details)
This revision was not accepted when it landed; it landed in state Needs Review.Mar 12 2018, 3:00 AM
This revision was automatically updated to reflect the committed changes.