Accepting request 232889 from Base:System
- 0005-libssl-Hide-library-private-symbols.patch Update to hide more symbols that are not part of the public API - openssl-gcc-attributes.patch BUF_memdup also needs attribute alloc_size as it returns memory of size of the second parameter. - openssl-ocloexec.patch Update, accept() also needs O_CLOEXEC. - 0009-Fix-double-frees.patch, 0017-Double-free-in-i2o_ECPublicKey.patch fix various double frees (from upstream) - 012-Fix-eckey_priv_encode.patch eckey_priv_encode should return an error inmediately on failure of i2d_ECPrivateKey (from upstream) - 0001-Axe-builtin-printf-implementation-use-glibc-instead.patch From libressl, modified to work on linux systems that do not have funopen() but fopencookie() instead. Once upon a time, OS didn't have snprintf, which caused openssl to bundle a *printf implementation. We know better nowadays, the glibc implementation has buffer overflow checking, has sane failure modes deal properly with threads, signals..etc.. - build with -fno-common as well. (forwarded request 232752 from elvigia) OBS-URL: https://build.opensuse.org/request/show/232889 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/openssl?expand=0&rev=116
This commit is contained in:
committed by
Git OBS Bridge
parent
191f308eaf
commit
94fbf434c7
@@ -1,3 +1,33 @@
|
||||
-------------------------------------------------------------------
|
||||
Mon May 5 16:25:17 UTC 2014 - crrodriguez@opensuse.org
|
||||
|
||||
- 0005-libssl-Hide-library-private-symbols.patch
|
||||
Update to hide more symbols that are not part of
|
||||
the public API
|
||||
|
||||
- openssl-gcc-attributes.patch BUF_memdup also
|
||||
needs attribute alloc_size as it returns memory
|
||||
of size of the second parameter.
|
||||
|
||||
- openssl-ocloexec.patch Update, accept()
|
||||
also needs O_CLOEXEC.
|
||||
|
||||
- 0009-Fix-double-frees.patch, 0017-Double-free-in-i2o_ECPublicKey.patch
|
||||
fix various double frees (from upstream)
|
||||
|
||||
- 012-Fix-eckey_priv_encode.patch eckey_priv_encode should
|
||||
return an error inmediately on failure of i2d_ECPrivateKey (from upstream)
|
||||
|
||||
- 0001-Axe-builtin-printf-implementation-use-glibc-instead.patch
|
||||
From libressl, modified to work on linux systems that do not have
|
||||
funopen() but fopencookie() instead.
|
||||
Once upon a time, OS didn't have snprintf, which caused openssl to
|
||||
bundle a *printf implementation. We know better nowadays, the glibc
|
||||
implementation has buffer overflow checking, has sane failure modes
|
||||
deal properly with threads, signals..etc..
|
||||
|
||||
- build with -fno-common as well.
|
||||
|
||||
-------------------------------------------------------------------
|
||||
Mon May 5 06:45:19 UTC 2014 - citypw@gmail.com
|
||||
|
||||
|
Reference in New Issue
Block a user