[Pkg-anonymity-tools] [onionshare] annotated tag 0.4 created (now 14540f7)

Ulrike Uhlig u-guest at moszumanska.debian.org
Tue Sep 2 17:50:15 UTC 2014


This is an automated email from the git hooks/post-receive script.

u-guest pushed a change to annotated tag 0.4
in repository onionshare.

        at  14540f7   (tag)
   tagging  90a22f724914725468f58f273af7fc8c7d2ad48f (commit)
  replaces  0.3
 tagged by  Micah Lee
        on  Wed Jul 16 02:57:50 2014 -0700

- Log -----------------------------------------------------------------
version 0.4
-----BEGIN PGP SIGNATURE-----

iQIcBAABCgAGBQJTxkyiAAoJEP1yCtnro0sc+ioQAOOWsw7m3IOA5bnqLNVFyCqS
o/IPwWAKE2hMCOn7WcN471+vOW/BOn+woPT+SJlUaMiZBQ6fauD+cc8TPrw0xw8N
WNLQy0M7EJzSWojokwaNoPPrLmd6otDDQoR1aqqAfEZCHu4Y8HRRDmFESPIPYfid
Hm/haT/F8DULXHDZ5xGgb37UQRyyFtbZp1aQ+muKRU9mrcVDM5R/WhB7EXZXwvTg
sifqRPaeqnM1DcfE61qR+o+FOrheG4eQaVjyIczGQj38cI/t/zu8m/OarumIvEd2
pN/iO4ZgvBUURpXqbl07G6wQqxD08DjzBR78TNSFDZsTfDqwAUPspNsM7m7W0zAG
mELYNO5enQP67sW/Jb7RJVqLlmNhRjeDk6/42fOWvXrLh56BDGb33+N+Iibh98iy
nH9R/EZDJ47hT4JNOMq1JKac72No+kfSrou+pOreJVxI70s1i/8IhVMY5dA83xf3
z/LX8jeuUI1PdzmfGi0+Nd0NZuLu8Jc2Pt59hyv3YjqckqxSi/H59xGtnIr5NCAh
IM84PMpy0lZiZHNfgrEhiVc7tlDAXARxDcAGjDgx9OhQTh6Zx0uoonRtANsvcFUr
sxoJcGjkDYnn7xpu5AYEOwVZeDGk61PSQcG9HrPxy1oG8cX0dFpJ1GutGauz/LQs
0IkoUX+qE00Rxefy2tHA
=W0gk
-----END PGP SIGNATURE-----

Garrett Robinson (2):
      constant time compare the slug to avoid timing attacks
      add push hook that runs test suite

Lazlo (1):
      Add missing Dutch translation string

Micah Lee (10):
      Merge pull request #73 from rufoa/patch-1
      Merge pull request #84 from garrettr/constant-time-routes
      Merge pull request #86 from garrettr/push-hook
      version bump to 0.4dev
      Merge pull request #88 from lazlolazlolazlo/patch-3
      Encoded strings passed to constant_time_compare as ascii, because it was
      fixed critical XSS bug that can deanonymize user
      use hash of /dev/urandom data instead of urandom data directly, to avoid leaking state of entropy
      add Content-Security-Policy so if there are other xss vulns they won't execute
      version bump

rufoa (1):
      fix iptables rule removal

-----------------------------------------------------------------------

No new revisions were added by this update.

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/collab-maint/onionshare.git



More information about the Pkg-anonymity-tools mailing list