[svn.haxx.se] · SVN Dev · SVN Users · SVN Org · TSVN Dev · TSVN Users · Subclipse Dev · Subclipse Users · this month's index

TortoiseSVN 1.6.16 released

From: Stefan Küng <tortoisesvn_at_gmail.com>
Date: Wed, 01 Jun 2011 22:42:19 +0200

Hi,

It is linked against the Subversion library version 1.6.17.

This is a bugfix/maintenance release.
The Subversion library 1.6.17 contains three fixes for security
vulnerabilities which affect the servers. TortoiseSVN is not affected by
those. The vulnerabilities are:
     CVE-2011-1752: Server NULL-pointer dereference
     CVE-2011-1783: Server memory exhaustion
     CVE-2011-1921: mod_dav_svn exposure of unreadable paths

More information on these vulnerabilities, including the relevent
advisories and potential attack vectors and workarounds, can be found on
the Subversion security website:
     http://subversion.apache.org/security/

You can get TortoiseSVN 1.6.16 from our download page:
http://tortoisesvn.net/downloads

If you upgrade from a version earlier than 1.6.10, you have to run a
"repair install" right after the upgrade finishes. To do that, run the
installer again and click on the "Repair Installation" button.
I'm sorry about the inconvenience.

If you want to know why the repair install is required, you can read
about the technical details in my post:
http://tortoisesvn.net/majorupgrade

The changelog for this release:
Version 1.6.16
Version 1.6.16
- BUG: The bugtraq:number property was not added
        automatically to new folders. (Stefan)
- CHG: the in-memory auth cache is now encrypted. (Stefan)

Stefan

-- 
        ___
   oo  // \\      "De Chelonian Mobile"
  (_,\/ \_/ \     TortoiseSVN
    \ \_/_\_/>    The coolest Interface to (Sub)Version Control
    /_/   \_\     http://tortoisesvn.net
------------------------------------------------------
http://tortoisesvn.tigris.org/ds/viewMessage.do?dsForumId=4061&dsMessageId=2755323
To unsubscribe from this discussion, e-mail: [users-unsubscribe_at_tortoisesvn.tigris.org].
Received on 2011-06-01 22:42:58 CEST

This is an archived mail posted to the TortoiseSVN Users mailing list.

This site is subject to the Apache Privacy Policy and the Apache Public Forum Archive Policy.