Changelog for
openssl-devel-0.9.6m-1.i386.rpm :
Wed Mar 17 13:00:00 2004 PLD Team
All persons listed below can be reached at AATTpld.org.pl
$Log: openssl.spec,v $
Revision 1.84.2.8 2004/03/17 17:24:22 kloczek
- updated to 0.9.6m,
- SECURITY FIXES: CAN-2004-0079
Fixed null-pointer bug leading to crash.
Revision 1.84.2.7 2003/11/04 23:06:14 kloczek
- updated to 0.9.6l,
- SECURITY FIXES: CAN-2003-0851
Stop bug triggering large recursion when presented with certain ASN.1
tags.
Revision 1.84.2.6 2003/10/01 00:31:28 kloczek
- updated to 0.9.6k,
- SECURITY FIX: CAN-2003-0543, CAN-2003-054
- integer overflow allows remote attackers to cause a denial of service (crash)
via an SSL client certificate with certain ASN.1 tag values.
- OpenSSL does not properly track the number of characters in certain ASN.1
inputs, which allows remote attackers to cause a denial of service (crash) via
an SSL client certificate that causes OpenSSL to read past the end of a buffer
when the long form is used.
Revision 1.84.2.5 2003/04/12 23:27:55 kloczek
- relase 1.
Revision 1.84.2.4 2003/04/12 10:52:19 misi3k
- updated to 0.9.6j
- removed patch 5 & 6 (not needed)
- rel 0.1
Note: Test me
Revision 1.84.2.3 2003/03/20 09:13:56 misi3k
security patch (no 6) - CAN-2003-0131 (Klima-Pokorny-Rosa attack on RSA in SSL/TLS)
Revision 1.84.2.2 2003/03/17 19:09:23 misi3k
- secuirty patch (patch5)
- rel 2
Revision 1.84.2.1 2003/02/20 11:10:54 qboosh
- security update to 0.9.6i (information leak through timing)
- STBR to ra/updates/security