pkgsrc/security/openssl/patches
fredb d5e2ea6e68 Update to 0.9.6g. The most significant change is this proof against
a stunning DoS vulnerability, fixed in 0.9.6f:

  *) Use proper error handling instead of 'assertions' in buffer
     overflow checks added in 0.9.6e.  This prevents DoS (the
     assertions could call abort()).
     [Arne Ansper <arne@ats.cyber.ee>, Bodo Moeller]

Regenerate the netbsd patch. This is now a clean diff against the
vendor tag, with version-number-only changes elided.

Partially revert "crypto/dist/openssl/crypto/rand/randfile.c", version
1.4 (via additional pkgsrc patch), to give this a shot to compile on
NetBSD-1.4.2 and earlier, which had no strlcpy() or strlcat().

Assemble the shared library without "-Bsymbolic", mainly to give this
a shot at linking on NetBSD-a.out (untested).
2002-08-10 04:50:31 +00:00
..
patch-aa Update to 0.9.6g. The most significant change is this proof against 2002-08-10 04:50:31 +00:00
patch-ab Update openssl to 0.9.6e. This update fixes multiple vulnerabilities, 2002-08-04 15:47:43 +00:00
patch-ac Update to 0.9.6g. The most significant change is this proof against 2002-08-10 04:50:31 +00:00
patch-ad Update openssl to 0.9.6e. This update fixes multiple vulnerabilities, 2002-08-04 15:47:43 +00:00
patch-ae Update openssl to 0.9.6e. This update fixes multiple vulnerabilities, 2002-08-04 15:47:43 +00:00
patch-af Update to 0.9.6g. The most significant change is this proof against 2002-08-10 04:50:31 +00:00
patch-ag Update to 0.9.6g. The most significant change is this proof against 2002-08-10 04:50:31 +00:00