Important security fix in Mono 2.8.2
Saturday, 08 January 2011
Mono 2.8.2 has just released been released. It contains an important security fix for users of ASP.NET as well as various updates to the Parallel Frameworks.

The security fix rectifies an unloading bug that can, under some circumstances, let ASP.NET applications misbehave and return the source code (.aspx) of the application or any other file in the web application directory. The Mono Project blog notes:

We strongly advise every Mono 2.8.xx user to upgrade to Mono 2.8.2 if they host web applications with it

mono

The other changes are:

  • Backport ParallelFx improvements from master (jlaval)
  • Fix state check for short-circuiting with SupportRecursion in ReaderWriterLockSlim #655361 (jlaval)
  • Increment Count even on single-processor in SpinWait. Fix #624849. (jlaval)
  • Update ThreadLocal to use default(T) for initialization with parameterless ctor. Fix #658689. (jlaval)

Related article: Mono 2.8

Banner


New Downloads For Raspberry Pi
16/09/2014

The Raspberry Pi Foundation has announced new releases of its OS Raspbian and the installer software that helps users to get started, NOOBS.



ShellShock - Yet Another Code Injection Vulnerability
25/09/2014

A vulnerability in the Bash shell has the Internet in full alarmed mode and like all good security holes it even has a catchy name - Shell Shock. How does it work?


More News


 

Last Updated ( Saturday, 08 January 2011 )
 
 

   
RSS feed of news items only
I Programmer News
Copyright © 2014 i-programmer.info. All Rights Reserved.
Joomla! is Free Software released under the GNU/GPL License.