[Buildroot] [PATCH 1/1] package/libopenssl: security bump to version 1.0.2m

Peter Korsgaard peter at korsgaard.com
Sun Nov 26 19:22:52 UTC 2017


>>>>> "Bernd" == Bernd Kuhls <bernd.kuhls at t-online.de> writes:

 > Fixes the following CVEs:
 > bn_sqrx8x_internal carry bug on x86_64 (CVE-2017-3736)
 > Malformed X.509 IPAddressFamily could cause OOB read (CVE-2017-3735)

 > Release notes: https://www.openssl.org/news/secadv/20171102.txt

 > Signed-off-by: Bernd Kuhls <bernd.kuhls at t-online.de>

Committed to 2017.02.x and 2017.08.x after s/libopenssl/openssl/, thanks.

-- 
Bye, Peter Korsgaard


More information about the buildroot mailing list