Trac is being migrated to new services! Issues can be found in our new YouTrack instance and WIKI pages can be found on our website.

Changes between Version 97 and Version 98 of ChangeLog


Ignore:
Timestamp:
Jan 28, 2014, 3:23:55 PM (10 years ago)
Author:
MarkDoliner
Comment:

Don't linkify file://

Legend:

Unmodified
Added
Removed
Modified
  • ChangeLog

    v97 v98  
    2323
    2424  * '''Windows-Specific Changes'''
    25     * When clicking file:// links, show the file in Explorer rather than attempting to run the file. This reduces the chances of a user clicking on a link and mistakenly running a malicious file. (Originally discovered by James Burton, Insomnia Security. Rediscovered by Yves Younan of Sourcefire VRT.) (CVE-2013-6486)
     25    * When clicking !file:// links, show the file in Explorer rather than attempting to run the file. This reduces the chances of a user clicking on a link and mistakenly running a malicious file. (Originally discovered by James Burton, Insomnia Security. Rediscovered by Yves Younan of Sourcefire VRT.) (CVE-2013-6486)
    2626    * Fix Tcl scripts. (#15520)
    2727    * Fix crash-on-startup when ASLR is always on. (#15521)
All information, including names and email addresses, entered onto this website or sent to mailing lists affiliated with this website will be public. Do not post confidential information, especially passwords!