diff options
| author | tedu <> | 2015-03-19 14:01:20 +0000 |
|---|---|---|
| committer | tedu <> | 2015-03-19 14:01:20 +0000 |
| commit | 5880eaad897594cd2996545010f7b301fa948230 (patch) | |
| tree | b4e49bfa3db1bceaad8c9aef66fe08626f29871f /src/lib/libc/crypt | |
| parent | 03e0d0748934886665c3031cda5fdccf45f2fb8d (diff) | |
| download | openbsd-libressl-v2.1.6.tar.gz openbsd-libressl-v2.1.6.tar.bz2 openbsd-libressl-v2.1.6.zip | |
Fix several crash causing defects from OpenSSL.libressl-v2.1.6
These include:
CVE-2015-0209 - Use After Free following d2i_ECPrivatekey error
CVE-2015-0286 - Segmentation fault in ASN1_TYPE_cmp
CVE-2015-0287 - ASN.1 structure reuse memory corruption
CVE-2015-0288 - X509_to_X509_REQ NULL pointer deref
CVE-2015-0289 - PKCS7 NULL pointer dereferences
Several other issues did not apply or were already fixed.
Refer to https://www.openssl.org/news/secadv_20150319.txt
joint work with beck, doug, guenther, jsing, miod
Diffstat (limited to 'src/lib/libc/crypt')
0 files changed, 0 insertions, 0 deletions
