Commit graph

230 commits

Author SHA1 Message Date
Dirk Meyer
288faffead - Security Update to 1.0.0a
Security: http://www.openssl.org/news/secadv_20120419.txt
Security: http://lists.grok.org.uk/pipermail/full-disclosure/2012-April/086585.html
Security: CVE-2012-2110
2012-04-20 11:13:17 +00:00
Dirk Meyer
4911d5e259 - update to 1.0.1 2012-04-11 21:06:35 +00:00
Dirk Meyer
61cb421f2a - drop DTLS bugfixes, now included upstream
- drop SCTP, will be in 1.0.1

- Security update to 1.0.0h
Security: http://www.openssl.org/news/secadv_20120312.txt
Security: CVE-2012-0884

PR:		166064
Approved by:	portmgr (miwi)
Feature safe:	yes
2012-03-15 06:15:33 +00:00
Dirk Meyer
38afb1ece3 - tamper SHLIB_VERSION_NUMBER in opensslv.h
This allows some qt apps to dynamicly load openssl
2012-02-22 05:15:12 +00:00
Dirk Meyer
1deb19c206 - Security update to 1.0.0g
Security: http://www.openssl.org/news/secadv_20120118.txt
2012-01-19 19:25:16 +00:00
Dirk Meyer
e53d93c4ec - Build with obsolte MD2 hash by default
- Security Update to 1.0.0f
Security: http://openssl.org/news/secadv_20120104.txt
Security: CVE-2011-4108
Security: CVE-2011-4109
Security: CVE-2011-4576
Security: CVE-2011-4577
Security: CVE-2011-4619
Security: CVE-2012-0027
Submitted by:	Tim Zingelman
2012-01-11 05:44:00 +00:00
Dirk Meyer
af7c43a3a6 - make portlint happier
- update patches
PR:		161379

Feature safe:	yes
2011-11-22 06:50:03 +00:00
Dirk Meyer
022b0607ab - cleanup homepage
Feature safe:	yes
2011-11-22 06:48:05 +00:00
Dirk Meyer
6c8034f069 - Security update to 1.0.0e
Security: http://openssl.org/news/secadv_20110906.txt

- drop option TLS_EXTRACTOR, now in distribution

- add RFC-5705 patch
Obtained from:	OpenBSD
2011-09-07 18:10:58 +00:00
Dirk Meyer
74bfc0300e - Security update to 1.0.0d
Security: http://openssl.org/news/secadv_20110208.txt
Security: CVE-2011-0014
Feature safe:	yes
2011-02-10 18:30:34 +00:00
Dirk Meyer
873ef5333e - Security update to 1.0.0c
Security: http://openssl.org/news/secadv_20101202.txt
Security: CVE-2010-4180
2010-12-03 15:19:01 +00:00
Dirk Meyer
04985871ca - Security update to 1.0.0b
Security: http://openssl.org/news/secadv_20101116.txt
Security: CVE-2010-3864

PR:		152312
Submitted by:	Alexander Wittig

- Fix regression in TLS handling
Obtained from:	http://cvs.openssl.org/chngview?cn=19998
2010-11-17 10:35:00 +00:00
Dirk Meyer
65eafa6640 - ease fetching 2010-06-11 20:15:30 +00:00
Dirk Meyer
c0ca6e5708 - update dtls-heartbeats.patch
PR:		147787
Submitted by:	Nagilum
2010-06-11 20:15:00 +00:00
Dirk Meyer
559bdfedae - update to openssl-1.0.0a
Security: CVE-2010-1633
this problem was already fixed in 1.0.0 with option WITH_DTLS_BUGS
2010-06-06 12:33:25 +00:00
Dirk Meyer
dfc1fbb738 - fix path in c_rehash
Submitted by:	Matthias Andree
Obtained from:	http://rt.openssl.org/Ticket/Display.html?id=2234

- add more DTLS bugfixes
Obtained from:	http://sctp.fh-muenster.de/
2010-05-05 15:21:58 +00:00
Dirk Meyer
adab779a7c - add option WITHOUT_ASM 2010-04-06 19:16:05 +00:00
Dirk Meyer
8fde0631e0 - fix build on sparc64
Submitted by:	kwm
2010-04-06 17:30:33 +00:00
Dirk Meyer
8e0cfdaeaf - chase updated patches for sctp-17 and dtls 2010-04-06 10:46:38 +00:00
Dirk Meyer
8fedce2dc9 - add options WITH_MD2
Suggested by: Tatsuki Makino

- add options WITH_RC5 and WITH_RFC3779
2010-04-05 18:21:07 +00:00
Dirk Meyer
f4d71924fa - strip text for options
Reported by:	Richard J. Dawes
2010-04-05 07:44:05 +00:00
Dirk Meyer
e5b44a0bfe - update to 1.0.0
- regression tested on i386, amd64 and ia64
- use DIST_SUBDIR to resolve conflicts with old patchfiles
- new options DTLS_RENEGOTIATION, DTLS_HEARTBEAT, TLS_EXTRACTOR, SCTP
2010-04-02 18:42:11 +00:00
Dirk Meyer
845a89146e - Security update to 0.9.8n
Security: http://www.openssl.org/news/secadv_20100324.txt
2010-03-30 19:07:14 +00:00
Dirk Meyer
a294aacc66 - update to 0.9.8m
- support RFC5746
Security: CVE-2008-1678
Security: CVE-2009-1377
Security: CVE-2009-1378
Security: CVE-2009-1379
Approved by:	portmgr (pav)
Feature safe:	yes
2010-02-26 18:47:09 +00:00
Dirk Meyer
1ebd0b8bc3 - allow use of faster CPU
- enable SSE2 optimisations
- fix thread option
- cleanup

- fix spelling
- pass no-zlib option
Submitted by:	b.f.
2010-01-23 18:00:29 +00:00
Dirk Meyer
c7131cd5e3 - Security patch to fix Memory leak
http://cvs.openssl.org/chngview?cn=19068
http://www.openwall.com/lists/oss-security/2010/01/13/3
Security: CVE-2009-4355
Security: CVE-2008-1678
Obtained from:	cvs.openssl.org
2010-01-20 14:56:53 +00:00
Dirk Meyer
d5539ce8ec - new option WITH_OPENSSL_THREADS
- revert Configure
- bump shared libs
2010-01-13 13:30:27 +00:00
Dirk Meyer
4538e2f16e - drop broken FIPS support
- drop broken SCTP support
- drop out of date MASTER_SITE
- mark DEPRECATED
2010-01-12 15:43:52 +00:00
Alex Dupre
72501233fc Don't link unneeded PTHREAD_LIBS.
Approved by:	portmgr
2010-01-05 12:13:56 +00:00
Dirk Meyer
f7ca7c18b6 - improve message for option WITH_SCTP
PR:		140153
Submitted by:	Paul J Murphy
2009-11-06 21:15:35 +00:00
Dirk Meyer
6eb8da82f8 - Security update to 0.9.8l
Security: CVE-2009-3555
2009-11-06 20:09:49 +00:00
Dirk Meyer
fb67194ad5 - add option WITH_FIPS to make config
Submitted by:	Patrick Rael
2009-10-30 08:24:05 +00:00
Dirk Meyer
113bb2e0b7 PR: 138881
Obtained from:	openssl-1.0.0
Feature safe:	yes
2009-09-19 05:21:20 +00:00
Dirk Meyer
32cddc21a1 - fix Hardware acceleration
PR:		138881
Submitted by:	Larry Baird
Feature safe:	yes
2009-09-17 07:06:24 +00:00
Dirk Meyer
1f374b9d63 - make patches fetchable
- add temorary location to allow fetch before mirrors are in sync.
2009-08-14 09:49:16 +00:00
Dirk Meyer
fa16f0a068 - revert patch 2009-08-14 06:32:22 +00:00
Dirk Meyer
36a579c7fb - update dtls-bugs.patch 2009-08-13 20:01:34 +00:00
Dirk Meyer
605eb60398 - mark option WITH_SCTP as broken 2009-08-10 12:47:30 +00:00
Dirk Meyer
94d3cac055 - fix build for OSVERSION 800105 2009-07-21 17:51:43 +00:00
Dirk Meyer
50769fcb33 - set MAKE_JOBS_UNSAFE
PR:		136938
Submitted by:	Dmitry Marakasov
2009-07-21 04:40:09 +00:00
Dirk Meyer
7e3ed674f2 - keep private directories around if used 2009-07-07 04:31:07 +00:00
Dirk Meyer
7e2e2acc6d - WITH_SCTP does not buuild on 7.1 2009-05-22 05:42:26 +00:00
Dirk Meyer
f062b23d9f - add more DTLS bugfixes
- use options framework
- new option WITH_FIPS
add fips code
- new option WITH_SCTP
add SCTP support to openssl
2009-05-20 19:22:47 +00:00
Dirk Meyer
315e28571a - Security Fix
Security:	CVE-2009-1377
Security:	CVE-2009-1378
Security:	http://article.gmane.org/gmane.comp.security.oss.general/1769
PR:		134653
2009-05-20 12:56:26 +00:00
Dirk Meyer
06e7a37f0a - Security update to 0.9.8k
Security: http://www.openssl.org/news/secadv_20090325.txt
Security: CVE-2009-0590
Security: CVE-2009-0591 (port not affected)
Security: CVE-2009-0789
PR:		133156
Submitted by:	Eygene Ryabinkin
2009-03-28 17:32:24 +00:00
Dirk Meyer
5269bfb809 - fix shared lib path
Force libssl.so to loads the match libcrypto.so.
The old fix was not working with 0.9.7

This should help ports linking to openssl from ports in FreeBSD 7.1 and above.
2009-02-23 13:03:10 +00:00
Dirk Meyer
c8a2a27107 - cleanup beta 2009-02-23 12:58:23 +00:00
Dirk Meyer
4c5fb218aa - update to 0.9.8j
- move patches from files-beta back to files
- FIPS disabled with force
- support for crypto_hw device cloning restored
- support for crypto_hw aes_256 restored
2009-01-09 18:49:06 +00:00
Dirk Meyer
e11ec731ce - Security fix for incorrect checks for malformed signatures
Security: http://www.openssl.org/news/secadv_20090107.txt
2009-01-09 14:56:30 +00:00
Dirk Meyer
d68cd7c715 - cleanup 0.97 2009-01-09 06:38:40 +00:00