<feed xmlns='http://www.w3.org/2005/Atom'>
<title>bitmask-vpn.git, branch 0.21.11</title>
<subtitle>[bitmask-vpn] 
</subtitle>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/'/>
<entry>
<title>[pkg] bump debian version</title>
<updated>2021-12-15T19:03:58+00:00</updated>
<author>
<name>kali kaneko (leap communications)</name>
<email>kali@leap.se</email>
</author>
<published>2021-12-15T19:03:58+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=f336f8f0946c595e6c65c0bb6c7756c19bd30909'/>
<id>f336f8f0946c595e6c65c0bb6c7756c19bd30909</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[bug] avoid installing in custom paths</title>
<updated>2021-12-15T19:02:12+00:00</updated>
<author>
<name>kali</name>
<email>kali@win</email>
</author>
<published>2021-12-15T18:45:11+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=e694a038c7edc146b63557425b307833b11aea57'/>
<id>e694a038c7edc146b63557425b307833b11aea57</id>
<content type='text'>
A vulnerability in QtIFW produces improper ACLs to be set when
installing in custom locations. This can lead to privilege escalation if
a non-privileged user overwrites the openvpn binary. Thanks to
researchers at Tenable for finding and reporting this!

Impact is considered low-medium, since an installation outside of the
suggested path is needed to trigger the issue.

Privileged execution of openvpn should be abandoned in next release, in
favor of the interactive service.

A bug upstream should be filed since other projects could be affected by
this vulnerability too.

-Resolves: #569
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
A vulnerability in QtIFW produces improper ACLs to be set when
installing in custom locations. This can lead to privilege escalation if
a non-privileged user overwrites the openvpn binary. Thanks to
researchers at Tenable for finding and reporting this!

Impact is considered low-medium, since an installation outside of the
suggested path is needed to trigger the issue.

Privileged execution of openvpn should be abandoned in next release, in
favor of the interactive service.

A bug upstream should be filed since other projects could be affected by
this vulnerability too.

-Resolves: #569
</pre>
</div>
</content>
</entry>
<entry>
<title>[pkg] bump version</title>
<updated>2021-12-14T18:30:07+00:00</updated>
<author>
<name>kali kaneko (leap communications)</name>
<email>kali@leap.se</email>
</author>
<published>2021-12-14T17:28:00+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=7ab7b8cd822dc0e4548f9cf6795567f2eeef44e1'/>
<id>7ab7b8cd822dc0e4548f9cf6795567f2eeef44e1</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[pkg] bugfixes windows</title>
<updated>2021-12-14T17:21:32+00:00</updated>
<author>
<name>kali</name>
<email>kali@win</email>
</author>
<published>2021-12-14T17:18:16+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=5d9788388c9cf176a331d1fddc708420d88c4ce5'/>
<id>5d9788388c9cf176a331d1fddc708420d88c4ce5</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[docs] windows docs</title>
<updated>2021-12-13T23:51:55+00:00</updated>
<author>
<name>kali kaneko (leap communications)</name>
<email>kali@leap.se</email>
</author>
<published>2021-12-13T23:51:55+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=a36b1312503d0f5d3e27bd4e296c0c9adb5e492b'/>
<id>a36b1312503d0f5d3e27bd4e296c0c9adb5e492b</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[docs] good practices pointer</title>
<updated>2021-12-13T19:24:22+00:00</updated>
<author>
<name>kali kaneko (leap communications)</name>
<email>kali@leap.se</email>
</author>
<published>2021-12-13T19:24:22+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=0e0ad6237dae735fa95ca32e9531f678df3981b6'/>
<id>0e0ad6237dae735fa95ca32e9531f678df3981b6</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[cc] standardize ua</title>
<updated>2021-12-13T17:10:34+00:00</updated>
<author>
<name>kali kaneko (leap communications)</name>
<email>kali@leap.se</email>
</author>
<published>2021-12-13T17:10:34+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=55ed8391d5ad741c461bc80b771b82d77b64707f'/>
<id>55ed8391d5ad741c461bc80b771b82d77b64707f</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[bug] initialize openvpn args for obfs4</title>
<updated>2021-12-13T17:02:16+00:00</updated>
<author>
<name>kali kaneko (leap communications)</name>
<email>kali@leap.se</email>
</author>
<published>2021-12-13T17:02:16+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=d0eeb901a0fd0c787289dc5beae6ed0e66905c42'/>
<id>d0eeb901a0fd0c787289dc5beae6ed0e66905c42</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[docs] snap wisdom + contribution ideas</title>
<updated>2021-12-10T20:09:16+00:00</updated>
<author>
<name>kali kaneko (leap communications)</name>
<email>kali@leap.se</email>
</author>
<published>2021-12-10T20:02:40+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=2aee25a1dff193a86f2a2cc1ae57cf86488dfdb4'/>
<id>2aee25a1dff193a86f2a2cc1ae57cf86488dfdb4</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[bug] typo: fix motd</title>
<updated>2021-12-10T19:48:37+00:00</updated>
<author>
<name>kali kaneko (leap communications)</name>
<email>kali@leap.se</email>
</author>
<published>2021-12-10T19:48:37+00:00</published>
<link rel='alternate' type='text/html' href='https://leap.se/git/bitmask-vpn.git/commit/?id=c79194158babd9d8d7b5f58188ffea71a029fc4d'/>
<id>c79194158babd9d8d7b5f58188ffea71a029fc4d</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
</feed>
