pkgsrc-Changes archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]
CVS commit: [pkgsrc-2012Q1] pkgsrc/security/openssl
Module Name: pkgsrc
Committed By: tron
Date: Fri May 11 14:56:49 UTC 2012
Modified Files:
pkgsrc/security/openssl [pkgsrc-2012Q1]: Makefile distinfo
Log Message:
Pullup ticket #3782 - requested by taca
security/openssl: security update
Revisions pulled up:
- security/openssl/Makefile 1.167
- security/openssl/distinfo 1.89
---
Module Name: pkgsrc
Committed By: taca
Date: Fri May 11 13:27:27 UTC 2012
Modified Files:
pkgsrc/security/openssl: Makefile distinfo
Log Message:
Update openssl to 0.9.8x.
OpenSSL CHANGES
_______________
Changes between 0.9.8w and 0.9.8x [10 May 2012]
*) Sanity check record length before skipping explicit IV in DTLS
to fix DoS attack.
Thanks to Codenomicon for discovering this issue using Fuzz-o-Matic
fuzzing as a service testing platform.
(CVE-2012-2333)
[Steve Henson]
*) Initialise tkeylen properly when encrypting CMS messages.
Thanks to Solar Designer of Openwall for reporting this issue.
[Steve Henson]
To generate a diff of this commit:
cvs rdiff -u -r1.164.2.2 -r1.164.2.3 pkgsrc/security/openssl/Makefile
cvs rdiff -u -r1.86.2.2 -r1.86.2.3 pkgsrc/security/openssl/distinfo
Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.
Home |
Main Index |
Thread Index |
Old Index