1. Dec 18, 2013
  2. Dec 15, 2013
    • Ahamed Nafeez's avatar
      crypto: comment change on disabling compression · 8a79cca8
      Ahamed Nafeez authored
      This is a comment change, where it originally says disabling TLS
      Compression protects against BEAST attack. But in fact, it is the
      CRIME attack(Compression Ratio Info-leak Made Easy) that makes use
      of TLS Compression and not BEAST.
      
      BEAST(Browser Exploit Against SSL/TLS) is an entirely another variant
      making use of the chosen boundary attack against CBC mode in
      encryption.
      
      Just making sure, that the exact reason for disabling TLS compression
      must be made clear and not be misleading with some other attack.
      8a79cca8
  3. Dec 14, 2013
    • Fedor Indutny's avatar
      deps: update v8 to 3.22.24.9 · 8803aa3a
      Fedor Indutny authored
      8803aa3a
    • Fedor Indutny's avatar
      Merge branch 'v0.10' · 6b4dc613
      Fedor Indutny authored
      Conflicts:
      	deps/v8/src/elements-kind.cc
      	deps/v8/src/elements-kind.h
      	deps/v8/src/hydrogen-instructions.h
      	deps/v8/src/hydrogen.cc
      	deps/v8/src/lithium.cc
      	deps/v8/src/lithium.h
      6b4dc613
    • jkummerow@chromium.org's avatar
      v8: backport fix for CVE-2013-{6639|6640} · 39e2426b
      jkummerow@chromium.org authored
      Quoting CVE-2013-6639:
      
          The DehoistArrayIndex function in hydrogen-dehoist.cc in Google V8
          before 3.22.24.7, as used in Google Chrome before 31.0.1650.63,
          allows remote attackers to cause a denial of service (out-of-bounds
          write) or possibly have unspecified other impact via JavaScript code
          that sets the value of an array element with a crafted index.
      
      Quoting CVE-2013-6640:
      
          The DehoistArrayIndex function in hydrogen-dehoist.cc in Google V8
          before 3.22.24.7, as used in Google Chrome before 31.0.1650.63,
          allows remote attackers to cause a denial of service (out-of-bounds
          read) via JavaScript code that sets a variable to the value of an
          array element with a crafted index.
      
      Like 6b92a7, this is unlikely to affect node.js because it only runs
      local, trusted code.  However, if there exists some module somewhere
      that populates an array index with remotely provided data this could
      very well be used to crash a remote server running node.  Defense in
      depth and all.
      
      This is a backport of upstream commit r17801. Original commit log:
      
          Limit size of dehoistable array indices
      
          LOG=Y
          BUG=chromium:319835,chromium:319860
          R=dslomov@chromium.org
      
          Review URL: https://codereview.chromium.org/74113002
      39e2426b
    • Fedor Indutny's avatar
      uv: Upgrade to v0.11.16 · f61d9405
      Fedor Indutny authored
      f61d9405
  4. Dec 13, 2013
  5. Dec 12, 2013
  6. Dec 11, 2013
  7. Dec 10, 2013
  8. Dec 08, 2013
  9. Dec 07, 2013