Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

privoxy-3.0.29-lp151.2.3.1 RPM for armv7hl

From OpenSuSE Ports Leap 15.1 updates for armv7hl

Name: privoxy Distribution: openSUSE Leap 15.1
Version: 3.0.29 Vendor: openSUSE
Release: lp151.2.3.1 Build date: Tue Dec 29 15:10:31 2020
Group: Productivity/Networking/Web/Proxy Build host: armbuild22
Size: 1033330 Source RPM: privoxy-3.0.29-lp151.2.3.1.src.rpm
Summary: The Internet Junkbuster - HTTP Proxy Server
The Internet Junkbuster - HTTP Proxy Server: A non-caching HTTP proxy
server that runs between a web browser and a web server and filters
contents as described in the configuration files.






* Sun Dec 06 2020 Andreas Stieger <>
  - privoxy 3.0.29:
    * Fixed memory leaks when a response is buffered and the buffer
      limit is reached or Privoxy is running out of memory.
    * Fixed a memory leak in the show-status CGI handler when
      no action files are configured
    * Fixed a memory leak in the show-status CGI handler when
      no filter files are configured
    * Fixes a memory leak when client tags are active
    * Fixed a memory leak if multiple filters are executed
      and the last one is skipped due to a pcre error
    * Prevent an unlikely dereference of a NULL-pointer that
      could result in a crash if accept-intercepted-requests
      was enabled, Privoxy failed to get the request destination
      from the Host header and a memory allocation failed.
    * Fixed memory leaks in the client-tags CGI handler when
      client tags are configured and memory allocations fail.
    * Fixed memory leaks in the show-status CGI handler when memory
      allocations fail
    * Add experimental https inspection support
    * Use JIT compilation for static filtering for speedup
    * Add support for Brotli decompression, add
      'no-brotli-accepted' filter which prevents the use of
      Brotli compression
    * Add feature to gather exended statistics
    * Use IP_FREEBIND socket option to help with failover
    * Allow to use extended host patterns and vanilla host patterns
      at the same time by prefixing extended host patterns with
    * Added "Cross-origin resource sharing" (CORS) support
    * Add SOCKS5 username/password support
    * Bump the maximum number of action and filter files
      to 100 each
    * Fixed handling of filters with "split-large-forms 1"
      when using the CGI editor.
    * Better detect a mismatch of connection details when
      figuring out whether or not a connection can be reused
    * Don't send a "Connection failure" message instead of the
      "DNS failure" message
    * Let LOG_LEVEL_REQUEST log all requests
    * Improvements to default Action file
  - license changed to GPLv3
  - remove packaging vulnerability boo#1157449
  - remove packaging for distributions without systemd
    drops privoxy-3.0.16-networkmanager.patch
* Sun Dec 06 2020 Andreas Stieger <>
  - add upstream signing key and verify source signature
* Wed Aug 19 2020 Dominique Leuenberger <>
  - Stop trying to mangle _unitdir: this is defined in all supported
* Mon Feb 03 2020 Dominique Leuenberger <>
  - BuildRequire pkgconfig(systemd) instead of systemd: allow OBS to
    shortcut through the -mini flavors.
* Thu Jul 25 2019
  - removal of SuSEfirewall2 service, since SuSEfirewall2 has been replaced by
    firewalld, see [1].
* Mon Dec 31 2018
  - Update to version 3.0.28:
    * Bug fixes:
    - Fix misplaced parentheses
    - Changed two regression tests to depend on config directive
* Wed Sep 28 2016
  - Update to version 3.0.26
    * Bug fixes:
    - Fixed crashes with "listen-addr :8118" (SF Bug #902).
      The regression was introduced in 3.0.25 beta and reported
      by Marvin Renich in Debian bug #834941.
    * General improvements:
    - Log when privoxy is toggled on or off via cgi interface.
    - Highlight the "Info: Now toggled " on/off log message
      in the Windows log viewer.
    - Highlight the loading actions/filter file log message
      in the Windows log viewer.
    - Mention client-specific tags on the toggle page as a
      potentionally more appropriate alternative.
    * Infrastructure improvements:
    - Add perl script to generate an RSS feed for the packages
      Submitted by "Unknown".
    * Build system improvements:
    - strptime.h: fix a compiler warning about ambiguous else.
    - Check for Docbook goo on the BSDs as well.
    - Let the dok-user target remove
      temporary files.
  - BuildArch for docs: noarch
* Sat Jan 23 2016
  - Privoxy 3.0.24
    Includes fixes for two security issues that may be used to
    remotely trigger crashes on platforms that carefully check memory
    * Security fixes (denial of service):
      + Prevent invalid reads in case of corrupt chunk-encoded
      content. CVE-2016-1982 [boo#963151]
      + Remove empty Host headers in client requests. Previously
      they would result in invalid reads. CVE-2016-1983 [boo#963152]
    * General bug fixes and improvements
    * White and blacklist updates
* Wed Jan 28 2015
  - add CVE IDs for [boo#914934]
* Tue Jan 27 2015
  - add CVE and bug IDs to last two changelog entries
* Mon Jan 26 2015
  - update to version 3.0.23 [boo#914934]
    - Bug fixes:
    - Fixed a DoS issue in case of client requests with incorrect
      chunk-encoded body. When compiled with assertions enabled
      (the default) they could previously cause Privoxy to abort().
    - Fixed multiple segmentation faults and memory leaks in the
      pcrs code. This fix also increases the chances that an invalid
      pcrs command is rejected as such. Previously some invalid commands
      would be loaded without error. Note that Privoxy's pcrs sources
      (action and filter files) are considered trustworthy input and
      should not be writable by untrusted third-parties.
    - Fixed an 'invalid read' bug which could at least theoretically
      cause Privoxy to crash. So far, no crashes have been observed.
    - Compiles with --disable-force again. Reported by Kay Raven.
    - Client requests with body that can't be delivered no longer
      cause pipelined requests behind them to be rejected as invalid.
    - General improvements:
    - If a pcrs command is rejected as invalid, Privoxy now logs
      the cause of the problem as text. Previously the pcrs error
      code was logged.
    - The tests are less likely to cause false positives.
    - Action file improvements:
    - '' is no longer blocked. Apparently it is not actually
      a pure tracking site (anymore?). Reported by Andrew on ijbswa-users@.
    - Unblock banners on which aren't ads.
    - Documentation improvements:
    - The 'Would you like to donate?' section now also contains
      a "Paypal" address.
    - The list of supported operating systems has been updated.
    - The existence of the SF support and feature trackers has been
      deemphasized because they have been broken for months.
      Most of the time the mailing lists still work.
    - The claim that default.action updates are sometimes released
      on their own has been removed. It hasn't happened in years.
    - Explicitly mention that Tor's port may deviate from the default
      when using a bundle. Requested by Andrew on ijbswa-users@.
* Fri Nov 28 2014
  - Privoxy 3.0.22 [boo#907675]
  - Bug fixes:
    - Fixed a memory leak when rejecting client connections
      [CVE-2015-1030 [CVE-2015-1031] [boo#913094]
    - Fixed an immediate-use-after-free bug and two additional
      unconfirmed use-after-free complaints
      [CVE-2015-1201] [boo#914450]
    - Actually show the FORCE_PREFIX value on the show-status page.
    - Properly deal with Keep-Alive headers with timeout= parameters
    - Not using any filter files no longer results in warning messages
      unless an action file is referencing header taggers or filters.
    - Fixed a bug that prevented Privoxy from reusing some reusable
  - General improvements:
    - Introduced NO-REQUEST-TAG and NO-RESPONSE-TAG.
    - Add support for the 'PATCH' method as defined in RFC5789.
    - Reject requests with unsupported Expect header values.
    - Normalize the HTTP-version in forwarded requests and responses.
    - Server 'Keep-Alive' headers are no longer forwarded.
    - Change declared template file encoding to UTF-8.
    - Do not pass rejected keep-alive timeouts to the server.
    - CGI templates no longer enforce new windows for some links.
    - Documentation improvements
    - Build system improvements
  - Action file improvements:
    - The pattern 'promotions.' is no longer being blocked.
    - Various updated filter rules and exceptions.
  - Filter file improvements & bug fixes:
    - Decrease the chances that js-annoyances creates invalid JavaScript.
    - Let the msn filter hide 'related' ads again.
    - Prevent img-reorder from messing up img tags with empty src
  - add source URL
  - fix self-obsoletion
  - clean up spec file
* Sun Nov 09 2014 Led <>
  - fix bashisms in pre script



Generated by rpm2html 1.8.1

Fabrice Bellet, Sat Apr 9 11:02:09 2022