<feed xmlns='http://www.w3.org/2005/Atom'>
<title>tor-browser/sandboxed-tor-browser, branch sandboxed-tor-browser-0.0.8</title>
<subtitle>Sandboxed Tor Browser</subtitle>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/'/>
<entry>
<title>Do the release ritual for sandboxed-tor-browser-0.0.8.</title>
<updated>2017-06-19T12:26:46+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-06-19T12:26:46+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=2ea0b9f35a944053555528b875d5b43ba87ebb2c'/>
<id>2ea0b9f35a944053555528b875d5b43ba87ebb2c</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Unbreak systems that don't have a ~/.Xauthority.</title>
<updated>2017-06-19T12:18:05+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-06-19T12:18:05+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=07e4f45f9cf02085e9e2faccb7428927cb27b905'/>
<id>07e4f45f9cf02085e9e2faccb7428927cb27b905</id>
<content type='text'>
Fallout from #22648, broke on my Fedora VM that uses XWayland, works
now.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Fallout from #22648, broke on my Fedora VM that uses XWayland, works
now.
</pre>
</div>
</content>
</entry>
<entry>
<title>Bug 22607: Make it clear that basically 0 active development is happening.</title>
<updated>2017-06-19T12:11:44+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-06-19T12:11:44+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=4fa55007da81894e60f3ea9890c72ba9d7a37c30'/>
<id>4fa55007da81894e60f3ea9890c72ba9d7a37c30</id>
<content type='text'>
No functional changes.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
No functional changes.
</pre>
</div>
</content>
</entry>
<entry>
<title>Bug 22470: Resync the bridges.</title>
<updated>2017-06-19T11:51:41+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-06-19T11:51:41+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=47da716196432ff5233ce5473946b842255b1a6b'/>
<id>47da716196432ff5233ce5473946b842255b1a6b</id>
<content type='text'>
Exactly what it says on the tin.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Exactly what it says on the tin.
</pre>
</div>
</content>
</entry>
<entry>
<title>Bug 20776: Remove the X11 `MIT-SHM` workaround from the stub.</title>
<updated>2017-06-19T11:32:45+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-06-19T11:30:52+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=6903227f8f0a1c06fe19aa26268195e47cc3b3b1'/>
<id>6903227f8f0a1c06fe19aa26268195e47cc3b3b1</id>
<content type='text'>
ESR52 has the workarounds for the libcairo brain damage, and thanks to
level.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
ESR52 has the workarounds for the libcairo brain damage, and thanks to
level.
</pre>
</div>
</content>
</entry>
<entry>
<title>Bug 22650: Make it clear that Pulse Audio is potentially dangerous to enable.</title>
<updated>2017-06-19T11:10:42+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-06-19T11:10:42+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=9f016c247ab26362c3ba05ee8bb70fd306bfdd42'/>
<id>9f016c247ab26362c3ba05ee8bb70fd306bfdd42</id>
<content type='text'>
Per "Jann Horn of Google Project Zero", PulseAudio is a potential vector
for sandbox escapes. While this is not part of the threat model in current
releases, it should be documented as such in the UI.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Per "Jann Horn of Google Project Zero", PulseAudio is a potential vector
for sandbox escapes. While this is not part of the threat model in current
releases, it should be documented as such in the UI.
</pre>
</div>
</content>
</entry>
<entry>
<title>Bug 22648: Prevent the "easy" to fix X11 related sandbox escapes.</title>
<updated>2017-06-19T10:44:41+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-06-14T10:19:28+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=1bfbd7cc1cd60c9468f2e33a3d4816973f1fb2f5'/>
<id>1bfbd7cc1cd60c9468f2e33a3d4816973f1fb2f5</id>
<content type='text'>
Per Jann Horn of Google Project Zero, there's a few trivial ways to do
horrific things via the X11 socket, because of the X protocol.

This hopefully closes some of them off by imposing a whitelist on X11
protocol extensions.

Note that it is likely that Firefox can still do horrific things via
X11, so this will need to be improved over time, but, as the README.md
says:

   There are several unresolved issues that affect security and
   fingerprinting.  Do not assume that this is perfect, merely
   "an improvement over nothing".
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Per Jann Horn of Google Project Zero, there's a few trivial ways to do
horrific things via the X11 socket, because of the X protocol.

This hopefully closes some of them off by imposing a whitelist on X11
protocol extensions.

Note that it is likely that Firefox can still do horrific things via
X11, so this will need to be improved over time, but, as the README.md
says:

   There are several unresolved issues that affect security and
   fingerprinting.  Do not assume that this is perfect, merely
   "an improvement over nothing".
</pre>
</div>
</content>
</entry>
<entry>
<title>Add one of these, before I get one I don't like forced on me.</title>
<updated>2017-06-14T07:05:55+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-06-14T07:05:55+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=02f611d5194b021d2842ef3683091e14594ac601'/>
<id>02f611d5194b021d2842ef3683091e14594ac601</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Bump the version to 0.0.8-dev, so I can do development again.</title>
<updated>2017-05-22T10:09:28+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-05-22T10:09:28+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=3ebd74a7b1cf05e07cb518078998789f753bb5c1'/>
<id>3ebd74a7b1cf05e07cb518078998789f753bb5c1</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Do the release ritual for sandboxed-tor-browser-0.0.7.</title>
<updated>2017-05-22T10:06:53+00:00</updated>
<author>
<name>Yawning Angel</name>
<email>yawning@schwanenlied.me</email>
</author>
<published>2017-05-22T10:06:53+00:00</published>
<link rel='alternate' type='text/html' href='https://gitweb.torproject.org/tor-browser/sandboxed-tor-browser.git/commit/?id=e8d953fca8088816e6fe8afbe4b57845dfaeecaa'/>
<id>e8d953fca8088816e6fe8afbe4b57845dfaeecaa</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
</feed>
