From b3063c70cefe50de11176f2fa102ea07805b882b Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Sat, 29 Aug 2026 08:38:43 +0000 Subject: [PATCH] [ GLSA 202608-33 ] Freenet: Deanonymization Vulnerability Bug: https://bugs.gentoo.org/970477 Signed-off-by: GLSAMaker Signed-off-by: Sam James --- glsa-202608-33.xml | 41 +++++++++++++++++++++++++++++++++++++++++ 1 file changed, 41 insertions(+) create mode 100644 glsa-202608-33.xml diff --git a/glsa-202608-33.xml b/glsa-202608-33.xml new file mode 100644 index 0000000000000..3ebb7c7328ac8 --- /dev/null +++ b/glsa-202608-33.xml @@ -0,0 +1,41 @@ + + + + Freenet: Deanonymization Vulnerability + A vulnerability has been discovered in Freenet, where an XSS vulnerability could lead to deanonymization. + freenet + 2026-08-29 + 2026-08-29 + 970477 + remote + + + 0.7.5_p1505 + 0.7.5_p1505 + + + +

Freenet is an encrypted network without censorship.

+
+ +

A vulnerability has been discovered in Freenet. Please review the CVE identifier referenced below for details.

+
+ +

This release fixes as an XSS vulnerability that may allow an attacker to deanonymize the user.

+
+ +

There is no known workaround at this time.

+
+ +

All Freenet users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=net-p2p/freenet-0.7.5_p1505" + +
+ + + sam + sam +
\ No newline at end of file