Build 1010 - MANDATORY SECURITY FIX
Matthew Toseland <toad-EI5O+8PHWbJeeLb3ft/[email protected]>
| Newsgroups | gmane.network.freenet.devel,gmane.network.freenet.support,gmane.network.freenet.technical |
|---|---|
| Message-ID | <[email protected]> |
Freenet 0.7 build 1010 is now available. This build fixes a serious security bug in our encryption code, affecting both link encryption and encryption of keys. Please upgrade immediately; it is a mandatory build as of now (meaning it will not connect to older builds). You will probably have to use the update script manually to do this; sorry for that, we *will* build an update-over-mandatory mechanism... Caveats: - All old KSKs are no longer retrievable. - You will need to generate a new SSK for your inserts to be encrypted properly. Otherwise the new build is backwards compatible with existing content. So there is no need for a content reset. PLEASE UPGRADE! If you are inclined to forward this to slashdot, please wait 24 hours or so in case I missed any catastrophic bugs. And please listen out for new builds. _______________________________________________ Devl mailing list [email protected] http://emu.freenetproject.org/cgi-bin/mailman/listinfo/devl
signature.asc
(application/pgp-signature, 189 B)
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFFox2WA9rUluQ9pFARAqTVAJ9bw8a2rfdtDP9Wly1USpooT/+SmgCfSzyM ugnaW3v24CLgyMiD7ppLrOw= =ZcXU -----END PGP SIGNATURE-----