pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: [pkgsrc-2008Q1] pkgsrc/security/openssl



Module Name:    pkgsrc
Committed By:   rtr
Date:           Thu Jun  5 12:24:00 UTC 2008

Modified Files:
        pkgsrc/security/openssl [pkgsrc-2008Q1]: Makefile distinfo
Added Files:
        pkgsrc/security/openssl/patches [pkgsrc-2008Q1]: patch-ab

Log Message:
pullup ticket #2414 - requested by tonnerre
openssl: DoS and double free fixes

revisions pulled up:
- pkgsrc/security/openssl/Makefile              1.132
- pkgsrc/security/openssl/distinfo              1.60
- pkgsrc/security/openssl/patches/patch-ab      1.12
- pkgsrc/security/openssl/patches/patch-ah      1.8

   Module Name: pkgsrc
   Committed By:        tonnerre
   Date:                Tue Jun  3 21:39:40 UTC 2008

   Modified Files:
        pkgsrc/security/openssl: Makefile distinfo
   Added Files:
        pkgsrc/security/openssl/patches: patch-ab patch-ah

   Log Message:
   Fix two Denial of Service vulnerabilities in OpenSSL 0.9.8g:
   - Fix flaw if 'Server Key exchange message' is omitted from a TLS
   handshake which could lead to a silent crash.
   - Fix double free in TLS server name extensions which could lead to a
   remote crash.

   Patches from upstream.


To generate a diff of this commit:
cvs rdiff -r1.131 -r1.131.2.1 pkgsrc/security/openssl/Makefile
cvs rdiff -r1.58 -r1.58.2.1 pkgsrc/security/openssl/distinfo
cvs rdiff -r0 -r1.11.26.1 pkgsrc/security/openssl/patches/patch-ab

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.



Home | Main Index | Thread Index | Old Index