aboutsummaryrefslogtreecommitdiff
path: root/changes/cve-2012-2249
Commit message (Expand)AuthorAge
* fold in changes files for upcoming 0.2.4.4-alphaRoger Dingledine2012-10-20
* Discard extraneous renegotiation attempts in the v3 link protocol•••Failure to do so left us open to a remotely triggerable assertion failure. Fixes CVE-2012-2249; bugfix on 0.2.3.6-alpha. Reported by "some guy from France". This patch is a forward-port to 0.2.4, to work with the new channel logic. Nick Mathewson2012-10-17