92eccf2d3b
In addition to about two years of changes, this contains notably the following security fix: When int is 32 bits wide (on 32-bit architectures like 386 and arm), an overflow could occur, causing a panic, due to malformed ASN.1 being passed to any of the ASN1 methods of String. Tested on linux/386 and darwin/amd64. This fixes CVE-2020-7919 and was found thanks to the Project Wycheproof test vectors. pkgsrc changes: Once again, the acme subdirectory was removed as it introduces a circular dependency with go-net. Prodded several times by ng0@
6 lines
489 B
Text
6 lines
489 B
Text
$NetBSD: distinfo,v 1.5 2020/02/03 13:14:20 bsiegert Exp $
|
|
|
|
SHA1 (go-crypto-0.0.20200122-69ecbb4d6d.tar.gz) = fb78c506c62b77d16628ddd177a9ca9e562088c9
|
|
RMD160 (go-crypto-0.0.20200122-69ecbb4d6d.tar.gz) = 4f8455fcdfbd8f7a5810a7de95f1e1c77ecdef64
|
|
SHA512 (go-crypto-0.0.20200122-69ecbb4d6d.tar.gz) = 74733829ea5d5f8dc553d181219fa671142eaa446ebc020e1c2d09e0efb864bb7c6fd175a7ec2da4220086d843995fea5488223c903f01ee992130f6a2621b8e
|
|
Size (go-crypto-0.0.20200122-69ecbb4d6d.tar.gz) = 1720483 bytes
|