From: Fabian Keil Date: Fri, 22 Jan 2016 10:21:02 +0000 (+0000) Subject: Rebuild docs with CVEs for 3.0.24 X-Git-Tag: v_3_0_24~1 X-Git-Url: http://www.privoxy.org/gitweb/%22https:/faq/developer-manual/man-page/user-manual/testing.html?a=commitdiff_plain;h=b0a7bd69d092018fab3b817ad3ef9531d73b0f05;p=privoxy.git Rebuild docs with CVEs for 3.0.24 --- diff --git a/doc/webserver/developer-manual/index.html b/doc/webserver/developer-manual/index.html index 115ab11c..2c6ab295 100644 --- a/doc/webserver/developer-manual/index.html +++ b/doc/webserver/developer-manual/index.html @@ -24,8 +24,8 @@ "http://www.privoxy.org/" target="_top">Privoxy Developers

-

$Id: developer-manual.sgml,v 2.59 2016/01/17 - 14:32:18 fabiankeil Exp $

+

$Id: developer-manual.sgml,v 2.60 2016/01/21 + 15:55:48 fabiankeil Exp $

diff --git a/doc/webserver/faq/index.html b/doc/webserver/faq/index.html index d2ed6b82..462d3d04 100644 --- a/doc/webserver/faq/index.html +++ b/doc/webserver/faq/index.html @@ -22,7 +22,7 @@ 2001-2014 by Privoxy Developers

-

$Id: faq.sgml,v 2.110 2016/01/17 14:32:19 fabiankeil +

$Id: faq.sgml,v 2.111 2016/01/21 15:55:49 fabiankeil Exp $

diff --git a/doc/webserver/user-manual/index.html b/doc/webserver/user-manual/index.html index eff7a204..2c05ff01 100644 --- a/doc/webserver/user-manual/index.html +++ b/doc/webserver/user-manual/index.html @@ -23,7 +23,7 @@ 2001-2014 by Privoxy Developers

-

$Id: user-manual.sgml,v 2.198 2016/01/17 14:32:19 +

$Id: user-manual.sgml,v 2.199 2016/01/21 15:55:49 fabiankeil Exp $

diff --git a/doc/webserver/user-manual/whatsnew.html b/doc/webserver/user-manual/whatsnew.html index dcf3fd00..3dfd2864 100644 --- a/doc/webserver/user-manual/whatsnew.html +++ b/doc/webserver/user-manual/whatsnew.html @@ -43,9 +43,8 @@

Privoxy 3.0.24 stable contains a couple of new features but is mainly a bug-fix release. Two of the fixed - bugs are security issues (CVE requests pending) and may be used to - remotely trigger crashes on platforms that carefully check memory - accesses (most don't).

+ bugs are security issues and may be used to remotely trigger crashes on + platforms that carefully check memory accesses (most don't).

  • @@ -54,13 +53,14 @@
    • Prevent invalid reads in case of corrupt chunk-encoded - content. Bug discovered with afl-fuzz and AddressSanitizer.

      + content. CVE-2016-1982. Bug discovered with afl-fuzz and + AddressSanitizer.

    • Remove empty Host headers in client requests. Previously they - would result in invalid reads. Bug discovered with afl-fuzz and - AddressSanitizer.

      + would result in invalid reads. CVE-2016-1983. Bug discovered with + afl-fuzz and AddressSanitizer.

  • @@ -83,7 +83,8 @@
  • Fixed crashes when executing external filters on platforms - like Mac OS X. Reported by Jonathan McKenzie on ijbswa-users@.

    + like Mac OS X. Reported by Jonathan McKenzie on + ijbswa-users@.