Update polarssl to 1.2.12.

PolarSSL ChangeLog

= Version 1.2.12 released 2014-10-24

Security
   * Remotely-triggerable memory leak when parsing some X.509 certificates
     (server is not affected if it doesn't ask for a client certificate).
     (Found using Codenomicon Defensics.)

Bugfix
   * Fix potential bad read in parsing ServerHello (found by Adrien
     Vialletelle).
   * ssl_close_notify() could send more than one message in some circumstances
     with non-blocking I/O.
   * x509_crt_parse() did not increase total_failed on PEM error
   * Fix compiler warnings on iOS (found by Sander Niemeijer).
   * Don't print uninitialised buffer in ssl_mail_client (found by Marc Abel).
   * Fix net_accept() regarding non-blocking sockets (found by Luca Pesce).
   * ssl_read() could return non-application data records on server while
     renegotation was pending, and on client when a HelloRequest was received.
   * Fix warnings from Clang's scan-build (contributed by Alfred Klomp).

Changes
   * X.509 certificates with more than one AttributeTypeAndValue per
     RelativeDistinguishedName are not accepted any more.
   * ssl_read() now returns POLARSSL_ERR_NET_WANT_READ rather than
     POLARSSL_ERR_SSL_UNEXPECTED_MESSAGE on harmless alerts.
   * Accept spaces at end of line or end of buffer in base64_decode().
This commit is contained in:
obache 2014-11-14 11:21:12 +00:00
parent 62f400bedd
commit 90937e1928
2 changed files with 6 additions and 6 deletions

View file

@ -1,7 +1,7 @@
# $NetBSD: Makefile,v 1.5 2014/07/16 10:03:57 obache Exp $
# $NetBSD: Makefile,v 1.6 2014/11/14 11:21:12 obache Exp $
#
DISTNAME= polarssl-1.2.11-gpl
DISTNAME= polarssl-1.2.12-gpl
PKGNAME= ${DISTNAME:-gpl=}
CATEGORIES= security devel
MASTER_SITES= https://polarssl.org/download/

View file

@ -1,6 +1,6 @@
$NetBSD: distinfo,v 1.3 2014/07/16 10:03:57 obache Exp $
$NetBSD: distinfo,v 1.4 2014/11/14 11:21:12 obache Exp $
SHA1 (polarssl-1.2.11-gpl.tgz) = 40cb3a833245273946c2075e6c948bbcda8a1be9
RMD160 (polarssl-1.2.11-gpl.tgz) = 8c9ff2687ded57e1b0ef5b351f61019b6e9c7347
Size (polarssl-1.2.11-gpl.tgz) = 1020170 bytes
SHA1 (polarssl-1.2.12-gpl.tgz) = 78cb31a960e4fffaefe7b838f7869072d1e15929
RMD160 (polarssl-1.2.12-gpl.tgz) = 1cfba1607651c008e8bca83553a0988283535a09
Size (polarssl-1.2.12-gpl.tgz) = 1021400 bytes
SHA1 (patch-Makefile) = d35397c1df60e384c2a0826844ac8765fd1fef1a