pkgsrc/security/gnutls
wiz 770746f32b Update to 1.4.4:
* Version 1.4.4 (released 2006-09-12)

** Relax the test that caught signatures that exploit the variant of
** Bleichenbacher's Crypto 06 rump session attack on our
** verification logic flaw.
In particular, we now permit the digestAlgorithm.parameters field to
be present but empty, whereas in 1.4.3 we actually checked that the
field was absent.

** Revert the removal of debug information for the GNUTLS-SA-2006-3 problem.
The messages are only printed in debug mode, which is not recommended
for normal use, and thus logging this situation cannot be abused as an
oracle in typical recommended situations.

** API and ABI modifications:
No changes since last version.
2006-09-16 06:21:22 +00:00
..
patches Update to version 1.3.5. Fixes build failures related to libtasn1. 2006-03-09 17:25:54 +00:00
buildlink3.mk Change the format of BUILDLINK_ORDER to contain depth information as well, 2006-07-08 23:10:35 +00:00
DESCR Fix typo. From Min Sik Kim in PR pkg/23827. 2003-12-21 17:24:50 +00:00
distinfo Update to 1.4.4: 2006-09-16 06:21:22 +00:00
Makefile Update to 1.4.4: 2006-09-16 06:21:22 +00:00
PLIST Update to 1.4.1: 2006-07-17 17:02:02 +00:00