forked from pool/openssl
6a01eea162
- update to openssl-1.0.2j * Missing CRL sanity check (CVE-2016-7052 bsc#1001148) - OpenSSL Security Advisory [22 Sep 2016] (bsc#999665) Severity: High * OCSP Status Request extension unbounded memory growth (CVE-2016-6304) (bsc#999666) Severity: Low * Pointer arithmetic undefined behaviour (CVE-2016-2177) (bsc#982575) * Constant time flag not preserved in DSA signing (CVE-2016-2178) (bsc#983249) * DTLS buffered message DoS (CVE-2016-2179) (bsc#994844) * OOB read in TS_OBJ_print_bio() (CVE-2016-2180) (bsc#990419) * DTLS replay protection DoS (CVE-2016-2181) (bsc#994749) * OOB write in BN_bn2dec() (CVE-2016-2182) (bsc#993819) * Birthday attack against 64-bit block ciphers (SWEET32) (CVE-2016-2183) (bsc#995359) * Malformed SHA512 ticket DoS (CVE-2016-6302) (bsc#995324) * OOB write in MDC2_Update() (CVE-2016-6303) (bsc#995377) * Certificate message OOB reads (CVE-2016-6306) (bsc#999668) - update to openssl-1.0.2i * remove patches: openssl-1.0.2a-new-fips-reqs.patch openssl-1.0.2e-fips.patch * add patches: openssl-1.0.2i-fips.patch openssl-1.0.2i-new-fips-reqs.patch - fix crash in print_notice (bsc#998190) * add openssl-print_notice-NULL_crash.patch OBS-URL: https://build.opensuse.org/request/show/430498 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/openssl?expand=0&rev=133 |
||
---|---|---|
.gitattributes | ||
.gitignore | ||
0001-Axe-builtin-printf-implementation-use-glibc-instead.patch | ||
0001-libcrypto-Hide-library-private-symbols.patch | ||
0005-libssl-Hide-library-private-symbols.patch | ||
baselibs.conf | ||
bug610223.patch | ||
compression_methods_switch.patch | ||
merge_from_0.9.8k.patch | ||
openssl-1.0.0-c_rehash-compat.diff | ||
openssl-1.0.1e-add-suse-default-cipher.patch | ||
openssl-1.0.1e-add-test-suse-default-cipher-suite.patch | ||
openssl-1.0.1e-truststore.diff | ||
openssl-1.0.2a-default-paths.patch | ||
openssl-1.0.2a-fips-ctor.patch | ||
openssl-1.0.2a-fips-ec.patch | ||
openssl-1.0.2a-ipv6-apps.patch | ||
openssl-1.0.2a-padlock64.patch | ||
openssl-1.0.2i-fips.patch | ||
openssl-1.0.2i-new-fips-reqs.patch | ||
openssl-1.0.2j.tar.gz | ||
openssl-1.0.2j.tar.gz.asc | ||
openssl-fips_disallow_ENGINE_loading.patch | ||
openssl-fips_disallow_x931_rand_method.patch | ||
openssl-fips_RSA_compute_d_with_lcm.patch | ||
openssl-fips-clearerror.patch | ||
openssl-fips-dont-fall-back-to-default-digest.patch | ||
openssl-fips-fix-odd-rsakeybits.patch | ||
openssl-fips-hidden.patch | ||
openssl-fips-rsagen-d-bits.patch | ||
openssl-fips-selftests_in_nonfips_mode.patch | ||
openssl-fix-pod-syntax.diff | ||
openssl-gcc-attributes.patch | ||
openssl-missing_FIPS_ec_group_new_by_curve_name.patch | ||
openssl-no-egd.patch | ||
openssl-ocloexec.patch | ||
openssl-pkgconfig.patch | ||
openssl-print_notice-NULL_crash.patch | ||
openssl-rsakeygen-minimum-distance.patch | ||
openssl-urandom-reseeding.patch | ||
openssl.changes | ||
openssl.keyring | ||
openssl.spec | ||
openssl.test | ||
README-FIPS.txt | ||
README.SUSE |
Please note that the man pages for the openssl libraries and tools have been placed in a package on its own right: openssl-doc Please install the openssl-doc package if you need the man pages, HTML documentation or sample C programs. The C header files and static libraries have also been extracted, they can now be found in the openssl-devel package. Your SuSE Team.