- Added patches to fix boo#1123334 (CVE-2018-20743), instability and crash due to crafted message flooding * added mumble-1.2.19-limit-amount-of-messages.patch (backported version of upstream patch) * added mumble-1.2.19-stricter-message-limit.patch (backported version of upstream patch) - Cleaned spec file, removed old EOL openSUSE and Fedora versions Renamed patches (clarified, that I had to backport them) OBS-URL: https://build.opensuse.org/request/show/715003 OBS-URL: https://build.opensuse.org/package/show/games:tools/mumble?expand=0&rev=107
23 lines
819 B
Diff
23 lines
819 B
Diff
From: 4761ca41ab1f611cd4a6d117f9f6cfd7c64f6b55
|
|
From: MadMaurice <madmaurice@zom.bi>
|
|
Date: Fri Aug 31 00:01:40 2018 +0200
|
|
|
|
Lower bucket params
|
|
|
|
Use 1 tokens per second and 5 burst instead of 4 tokens per second and 30 burst
|
|
|
|
diff -Nur old/src/murmur/ServerUser.cpp new/src/murmur/ServerUser.cpp
|
|
--- old/src/murmur/ServerUser.cpp 2019-07-13 01:28:14.972194419 +0200
|
|
+++ new/src/murmur/ServerUser.cpp 2019-07-13 01:29:36.724758470 +0200
|
|
@@ -154,8 +154,8 @@
|
|
|
|
#endif
|
|
|
|
-// Rate limiting: burst up to 30, 4 message per sec limit over longer time
|
|
-LeakyBucket::LeakyBucket() : tokensPerSec(4), maxTokens(30), currentTokens(0) {
|
|
+// Rate limiting: burst up to 5, 1 message per sec limit over longer time
|
|
+LeakyBucket::LeakyBucket() : tokensPerSec(1), maxTokens(5), currentTokens(0) {
|
|
lastUpdate = now();
|
|
}
|
|
|