<h1 class="SECT1"><a name="COPYRIGHT" id="COPYRIGHT">7. Privoxy
Copyright, License and History</a></h1>
- <p>Copyright © 2001-2013 by Privoxy Developers <code class=
+ <p>Copyright © 2001-2015 by Privoxy Developers <code class=
"EMAIL"><<a href=
"mailto:ijbswa-developers@lists.sourceforge.net">ijbswa-developers@lists.sourceforge.net</a>></code></p>
2001-2014 by <a href="http://www.privoxy.org/" target="_top">Privoxy
Developers</a></sub><br></p>
- <p class="PUBDATE">$Id: faq.sgml,v 2.105 2014/11/28 14:26:35 fabiankeil
+ <p class="PUBDATE">$Id: faq.sgml,v 2.107 2014/12/19 12:31:46 fabiankeil
Exp $<br></p>
<div>
</table>
</div>
- <p><sub>Copyright © 2001-2013 by Privoxy Developers</sub></p>
+ <p><sub>Copyright © 2001-2015 by Privoxy Developers</sub></p>
</div>
</div>
</body>
<h2 class="SECT1"><a name="AEN65" id="AEN65"></a></h2>
- <p><sub>Copyright © 2001-2013 by Privoxy Developers</sub></p>
+ <p><sub>Copyright © 2001-2015 by Privoxy Developers</sub></p>
</div>
</div>
</body>
<h1 class="SECT1"><a name="COPYRIGHT" id="COPYRIGHT">12. Privoxy
Copyright, License and History</a></h1>
- <p>Copyright © 2001-2013 by Privoxy Developers <code class=
+ <p>Copyright © 2001-2015 by Privoxy Developers <code class=
"EMAIL"><<a href=
"mailto:ijbswa-developers@lists.sourceforge.net">ijbswa-developers@lists.sourceforge.net</a>></code></p>
Release</a></h1>
<p><span class="APPLICATION">Privoxy 3.0.23</span> stable is a bug-fix
- release, some of the fixed bugs are security issues (CVE requests
- pending):</p>
+ release, some of the fixed bugs are security issues:</p>
<ul>
<li>
<p>Fixed a DoS issue in case of client requests with incorrect
chunk-encoded body. When compiled with assertions enabled (the
default) they could previously cause Privoxy to abort(). Reported
- by Matthew Daley.</p>
+ by Matthew Daley. CVE-2015-1380.</p>
</li>
<li>
pcrs command is rejected as such. Previously some invalid
commands would be loaded without error. Note that Privoxy's pcrs
sources (action and filter files) are considered trustworthy
- input and should not be writable by untrusted third-parties.</p>
+ input and should not be writable by untrusted third-parties.
+ CVE-2015-1381.</p>
</li>
<li>
<p>Fixed an 'invalid read' bug which could at least theoretically
- cause Privoxy to crash. So far, no crashes have been
- observed.</p>
+ cause Privoxy to crash. So far, no crashes have been observed.
+ CVE-2015-1382.</p>
</li>
<li>