Announcement: libproxy 0.4.9 released

128 views
Skip to first unread message

Nicolas Dufresne

unread,
Oct 10, 2012, 12:37:06 PM10/10/12
to libproxy
Dear all,

Today we released version 0.4.9 of libproxy. This is important bug fix
release that fix a buffer overflow in the HTTP client code. Please refer
to CVE-2012-4504. This security issue has been found in all 0.4 version
of libproxy. CVE-2012-4505 has also been issued for libproxy 0.3.X. This
version of libproxy is not supported anymore, please upgrade to latest
version.

Enjoy !

ChangeLog:
* CVE-2012-4504 Fixed buffer overflow when downloading PAC
* Fix infinit loop upon network errors


Reply all
Reply to author
Forward
0 new messages