35bfc5a2d4
* Version 2.6.1 (released 2008-11-10) ** libgnutls: Fix X.509 certificate chain validation error. [GNUTLS-SA-2008-3] The flaw makes it possible for man in the middle attackers (i.e., active attackers) to assume any name and trick GNU TLS clients into trusting that name. Thanks for report and analysis from Martin von Gagern <Martin.vGagern@gmx.net>. [CVE-2008-4989] Any updates with more details about this vulnerability will be added to <http://www.gnu.org/software/gnutls/security.html> ** libgnutls: Add missing prototype for gnutls_srp_set_prime_bits. Reported by Kevin Quick <quick@sparq.org> in <https://savannah.gnu.org/support/index.php?106454>. ** libgnutls-extra: Protect internal symbols with static. Fixes problem when linking certtool statically. Tiny patch from Aaron Ucko <ucko@ncbi.nlm.nih.gov>. ** libgnutls-openssl: Fix patch against X509_get_issuer_name. It incorrectly returned the subject DN instead of issuer DN in v2.6.0. Thanks to Thomas Viehmann <tv@beamnet.de> for report. ** certtool: Print a PKCS #8 key even if it is not encrypted. ** tests: Make tests compile when using internal libtasn1. Patch by ludo@gnu.org (Ludovic Courtès). ** API and ABI modifications: No changes since last version.
12 lines
657 B
Text
12 lines
657 B
Text
$NetBSD: distinfo,v 1.49 2008/11/10 17:33:20 wiz Exp $
|
|
|
|
SHA1 (gnutls-2.6.1.tar.bz2) = a445e84176bf772794db9d8c71d5515dedb14bcc
|
|
RMD160 (gnutls-2.6.1.tar.bz2) = c39539bd5d4e07dc09f5827a8c22d876272b4bbc
|
|
Size (gnutls-2.6.1.tar.bz2) = 5113327 bytes
|
|
SHA1 (patch-aa) = 8e9ea317342d584fb6f931f96458cc3d7d747ca0
|
|
SHA1 (patch-ab) = 17605f0d3b1895c1c63c8dabc21bdebf95eb7785
|
|
SHA1 (patch-ae) = f505476ce0477dc547e8698d205d6ba26fe85f48
|
|
SHA1 (patch-af) = bd4701640dfef5bfdce87d620befd93098b0dff3
|
|
SHA1 (patch-ag) = 39298bf6cbff77d880654067e797a9a4cb868b9b
|
|
SHA1 (patch-ah) = 889b69c23b4b0584fddd08a6827b10b78fc8f018
|
|
SHA1 (patch-ai) = 2c5c181ec6de9622cac66c2d5fe2cc8f3f89fbe8
|