From 12db207e9b1112092f527f91b0c3d2ef8d7b8297 Mon Sep 17 00:00:00 2001 From: Hauke Mehrtens Date: Fri, 27 Jan 2017 23:36:45 +0100 Subject: openssl: update to version 1.0.2k This fixes the following security problems: CVE-2017-3731: Truncated packet could crash via OOB read CVE-2017-3732: BN_mod_exp may produce incorrect results on x86_64 CVE-2016-7055: Montgomery multiplication may produce incorrect results Signed-off-by: Hauke Mehrtens --- package/libs/openssl/patches/150-no_engines.patch | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'package/libs/openssl/patches/150-no_engines.patch') diff --git a/package/libs/openssl/patches/150-no_engines.patch b/package/libs/openssl/patches/150-no_engines.patch index 274ecbe..586d1f2 100644 --- a/package/libs/openssl/patches/150-no_engines.patch +++ b/package/libs/openssl/patches/150-no_engines.patch @@ -1,6 +1,6 @@ --- a/Configure +++ b/Configure -@@ -2114,6 +2114,11 @@ EOF +@@ -2128,6 +2128,11 @@ EOF close(OUT); } -- cgit v1.1