libXdmcp/libXdmcp-1.1.3.tar.bz2
Stefan Dirsch a377da9893 - Update to version 1.1.3
* This release provides a fix for CVE-2017-2625 for platforms which don't have
    arc4random_buf() in their default libraries but do have getentropy(), such
    as Linux platforms with a kernel version of 3.17 or newer and a glibc version
    of 2.25 or newer.   (libXdmcp 1.1.2 already ensured that arc4random_buf()
    is used on platforms that have it to provide sufficient entropy in XDMCP
    key generation, but left other platforms with the weaker methods.  Linux
    platforms could also have linked against libbsd to use arc4random_buf()
    with libXdmcp 1.1.2 for stronger keys.)
- supersedes U_Fix-compilation-error-when-arc4random_buf-is-not-ava.patch,
  U_Use-getentropy-if-arc4random_buf-is-not-available.patch

OBS-URL: https://build.opensuse.org/package/show/X11:XOrg/libXdmcp?expand=0&rev=14
2019-03-21 15:13:01 +00:00

4 lines
131 B
Plaintext

version https://git-lfs.github.com/spec/v1
oid sha256:20523b44aaa513e17c009e873ad7bbc301507a3224c232610ce2e099011c6529
size 332795