[Oisf-devel] [COMMIT] OISF annotated tag, suricata-2.0.1rc1, created. suricata-2.0.1rc1

OISF Git noreply at openinfosecfoundation.org
Mon May 12 12:50:25 UTC 2014

This is an automated email from the git hooks/post-receive script. It was
generated because a ref change was pushed to the repository containing
the project "OISF".

The annotated tag, suricata-2.0.1rc1 has been created
        at  cfb228e49e19191d36452f6686505b75fad6fe52 (tag)
   tagging  7e8f80b390c2d53c346309dd0f1cf4cbe75862ff (commit)
  replaces  suricata-2.0
 tagged by  Victor Julien
        on  Mon May 12 14:49:19 2014 +0200

- Log -----------------------------------------------------------------
Tag 2.0.1rc1 release
Version: GnuPG v1.4.14 (GNU/Linux)


Eric Leblond (6):
      output: clean file desc at exit.
      util-ioctl: only get MTU when iface name is set
      af-packet: fix error handling
      packet handling: fix release function
      af-packet: exit in case of a fatal error
      doxygen: add source browser

Jason Ish (4):
      Force pidfile creation of --pidfile.
      DAG: Sync dag packet and drop counts to live device on exit for better exit
      DAG: Consistent code style.
      DAG: Pull some raw values out into defines.

Ken Steele (2):
      Change configure to allow statically linking libpcre.
      Fix unaligned load in AC-TILE MPM.

Pierre Chifflier (1):
      TLS: add detection for malicious heartbeats (AKA heartbleed)

Tom DeCanio (4):
      json: somewhere along the way  IP/port pairs had gotten swapped in
      json: add custom output capability to http eve log
      json: address custom output capability to http eve log review comments
      eve-log: swap ip/port pairs in dns answers

Victor Julien (76):
      Fix app-layer-protocol FP on multi TX flow
      detect state: remove alproto check for AMATCH
      detect state: fix indent
      TLS: register patterns for tls-alerts
      icmpv6: add multicast types
      ipv6: add support for PAD1
      tls: no event on 'new session ticket' in handshake
      app-layer: cleanups
      decode: introduce DecodeThreadVarsFree
      pcap-file: clean up decode thread local storage
      drmemory: remove bug 978 suppression
      af-packet: clean up decode thread local storage
      nfq: clean up decode thread local storage
      pfring: clean up decode thread local storage
      pcap: clean up decode thread local storage
      napatech: clean up decode thread local storage
      ipfw: clean up decode thread local storage
      mpipe: clean up decode thread local storage
      endace-dag: clean up decode thread local storage
      erf-file: clean up decode thread local storage
      unified2: fix memory leak at shutdown
      output: add Disable funcs to mirror Enable
      drop loggers: call disable func
      log-tls: run Disable at shutdown
      alert-json: fix cleanup
      dns-json: fix cleanup
      file-json: cleanup at shutdown
      http-json: add missing cleanup functions
      ssh-json: add clean up functions
      eve-log: fix mem leak at shutdown
      drop-json: fix cleanup
      tls-json: add cleanup function
      output api: complete shutdown functions
      output-api: cleanup handling
      Fix 2 compiler warnings
      detect: modify AMATCH locking
      detect: cleanup
      detect: locking update
      detect: locking update continued
      detect: fix alstate handling
      refactor IDS/IPS engine mode logic
      stream: improve retransmission handling
      app-layer: proto detection update
      proto-detect: update port logic
      proto-detect: masks cleanup
      dns: improve response name parsing
      byte-extract: switch to pcre_copy_substring
      byte-test: switch to pcre_copy_substring
      stream: fix midstream syn/ack setup
      protocol detection: midstream handling update
      proto detect: add cutoff for unbalanced traffic
      stream: detect data gap at stream start
      stream: improve midstream reassembly gap detection
      protocol detection: handle very unbalanced case
      stream: flags cleanup
      stream: improve StreamTcpPruneSession
      stream: fix raw reassembly flag issue
      stream: update GAP detection
      stream: improve retransmission handling
      json-file: check pointer before using
      json-file: improve error handling
      rohash: fix potential bad shift
      http-json: init 'fields' to 0 before setting it
      detect: add more defensive checks for flow handling
      tls/heartbleed: add rule for invalid encrypted hb
      tls/heartbleed: formatting fixes
      tls/heartbleed: improve encrypted logic
      tls/heartbleed: fix test
      app-layer: improve no payload inspect flag
      stream: unify segment discard handling
      stream: implement raw reassembly stop api
      stream: cleanup
      unix-socket: reset logging api's properly
      http-json: fix coverity warning
      json output: don't set 'unknown' for missing data
      Update Changelog for 2.0.1rc1 changes

Will Metcalf (1):
      Look for Mismatched Encrypted HB request and response sizes, along with multiple in-flight HB requests from the same direction



More information about the Oisf-devel mailing list