Date: Tue, 7 Jan 2014 23:14:42 -0800 From: Barry Allard <barry.allard@gmail.com> To: freebsd-ports@freebsd.org Cc: dinoex@FreeBSD.org Subject: security/openssl: 1.0.1f - fixes 3 CVEs and a bug Message-ID: <8061F3C8-7B7D-4837-B656-0D8804501CB9@gmail.com>
next in thread | raw e-mail | index | archive | help
--Apple-Mail=_24D86F88-E2CE-43E0-9F15-5CCA73C132E3 Content-Transfer-Encoding: 7bit Content-Type: text/plain; charset=us-ascii > Major changes between OpenSSL 1.0.1e and OpenSSL 1.0.1f [6 Jan 2014] > > - Don't include gmt_unix_time in TLS server and client random values > - Fix for TLS record tampering bug CVE-2013-4353 > - Fix for TLS version checking bug CVE-2013-6449 > - Fix for DTLS retransmission bug CVE-2013-6450 https://www.openssl.org/news/openssl-1.0.1-notes.html BR, Barry Allard --- Maintainer details: http://www.openssl.org/source/openssl-1.0.1f.tar.gz sha256: 6cc2a80b17d64de6b7bac985745fdaba971d54ffd7d38d3556f998d7c0c9cb5a sha1: 9ef09e97dfc9f14ac2c042f3b7e301098794fc0f gpg: http://www.openssl.org/source/openssl-1.0.1f.tar.gz.asc https://www.openssl.org/docs/misc/fingerprints.txt --Apple-Mail=_24D86F88-E2CE-43E0-9F15-5CCA73C132E3 Content-Transfer-Encoding: 7bit Content-Disposition: attachment; filename=signature.asc Content-Type: application/pgp-signature; name=signature.asc Content-Description: Message signed with OpenPGP using GPGMail -----BEGIN PGP SIGNATURE----- iQIcBAEBAgAGBQJSzPriAAoJEOjCundgpf8RraoP/iHnNVMNnjqRx9ieDJHHo02z RiHchUZNDdlnRJt/ArttbQC16DRGy/y7rvjGr6YKSQm04I0KnMHi0zaHpZrtwWm0 ChHKqEv3iFIIu6ht+9RmSyBuD4TiSLcwAJ+pMrZ8ez09vvCqc4fMGrE+LYlTtuuj HabMsg0zP9vigH0UFHLP/EYpFZXHf2vyC/FwCg0/WDuzqIwcjknMC8zsjAoz6/85 xBALbjqOz9a0MOWcTWKMqosV669AuaBdFpd0cJj6L/otJteNGg+D5RDCeIrBZWDG 1seeA5Hc0atzf+6INe0wS+g8+4Vtcm8/HMcqZ34viNvSOdyPPCtr40NcylgpP610 2TVDoEwaDz/f3rnyG59c770GsaRu9njwCiK9gI8PFBgInq4WMPH+UzOs6vrS6331 qxMN028Z/PP0bPudU04hsxqgc6lpf4pH5LbvjDC7cjl8OM402/a2FMucxvKo3jdO p++DQEWbKAUeG0OY7X2rAVAfZX35r6YvewUqnAVy2lJbjz1QzBf3CyTeVhOZtFIv tBXc7+qeOfPrihqw0vqJzV5thPVG60naQuqtJ9MBVOZbeHjtZVLVnBay9hm2cXSO DY30e19vxYDdwzTZ0qBxDIdgX352omI8H0D/R5R2GE7erCY8tepgN6tljT1sNQ0I hHo76saFXdhDKmbblXjz =poTf -----END PGP SIGNATURE----- --Apple-Mail=_24D86F88-E2CE-43E0-9F15-5CCA73C132E3--
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?8061F3C8-7B7D-4837-B656-0D8804501CB9>