You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
We just fixed a security issue in the bittorrent-dht module that would allow an attacker to send a specific series of messages to a listening peer to make it disclose internal memory of the node.js process.
All users of bittorrent-dht should upgrade to version 5.1.3 or later.
The text was updated successfully, but these errors were encountered:
feross
changed the title
IMPORTANT: Critical security issue fixed in 5.1.3. All users should upgrade.
Important: Critical security issue fixed in 5.1.3. All users should upgrade.
Jan 2, 2016
All versions of bittorrent-dht less than 5.1.3 have been deprecated on npm, so users installing those versions should get a warning to upgrade to a newer version.
We just fixed a security issue in the
bittorrent-dht
module that would allow an attacker to send a specific series of messages to a listening peer to make it disclose internal memory of the node.js process.All users of
bittorrent-dht
should upgrade to version 5.1.3 or later.The text was updated successfully, but these errors were encountered: