From 76e0808cc2f88c110ac3c3fe3c03b37586bd0bafb908a57ff43dfb993969ae94 Mon Sep 17 00:00:00 2001 From: Pedro Monreal Gonzalez Date: Wed, 12 Feb 2025 07:58:33 +0000 Subject: [PATCH] expected. [bsc#1236599, CVE-2024-12797] OBS-URL: https://build.opensuse.org/package/show/security:tls/openssl-3?expand=0&rev=133 --- openssl-3.changes | 2 +- openssl-3.spec | 3 --- 2 files changed, 1 insertion(+), 4 deletions(-) diff --git a/openssl-3.changes b/openssl-3.changes index 82db47c..9dea615 100644 --- a/openssl-3.changes +++ b/openssl-3.changes @@ -3,7 +3,7 @@ Tue Feb 11 18:21:12 UTC 2025 - Lucas Mulling - Update to 3.2.4: * Fixed RFC7250 handshakes with unauthenticated servers don't abort as - expected. [CVE-2024-12797] + expected. [bsc#1236599, CVE-2024-12797] * Fixed timing side-channel in ECDSA signature computation. [CVE-2024-13176] * Fixed possible OOB memory access with invalid low-level GF(2^m) elliptic curve parameters. [CVE-2024-9143] diff --git a/openssl-3.spec b/openssl-3.spec index 53e90e9..cf7f7dc 100644 --- a/openssl-3.spec +++ b/openssl-3.spec @@ -145,8 +145,6 @@ Patch64: openssl-3-fix-memleak-s390x_HMAC_CTX_copy.patch Patch65: openssl-3-fix-sha3-squeeze-ppc64.patch Patch66: openssl-3-fix-quic_multistream_test.patch -BuildRequires: pkgconfig - # ulp-macros is available according to SUSE version. %ifarch x86_64 %if 0%{?sle_version} >= 150400 || 0%{?suse_version} >= 1540 @@ -159,7 +157,6 @@ BuildRequires: gcc13 BuildRequires: ulp-macros %endif %endif - BuildRequires: pkgconfig BuildRequires: pkgconfig(zlib) Requires: libopenssl3 = %{version}-%{release}