<feed xmlns='http://www.w3.org/2005/Atom'>
<title>src-test2/crypto/openssl, branch release/8.4.0</title>
<subtitle>FreeBSD source tree</subtitle>
<id>https://cgit-dev.freebsd.org/src-test2/atom?h=release%2F8.4.0</id>
<link rel='self' href='https://cgit-dev.freebsd.org/src-test2/atom?h=release%2F8.4.0'/>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/'/>
<updated>2013-03-28T06:51:29Z</updated>
<entry>
<title>MFS r248816:</title>
<updated>2013-03-28T06:51:29Z</updated>
<author>
<name>Xin LI</name>
<email>delphij@FreeBSD.org</email>
</author>
<published>2013-03-28T06:51:29Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=f787c80d66876b52ed1d7b53c573decd73031690'/>
<id>urn:sha1:f787c80d66876b52ed1d7b53c573decd73031690</id>
<content type='text'>
MFV r248595:

 - Integrate OpenSSL revisions
   fb092ef4fca897344daf7189526f5f26be6487ce,
   a93cc7c57333f4538cbcdedd2e961a5a38caa52d, and
   76c61a5d1adb92388f39e585e4af860a20feb9bb.

   This removes the newly added orig_len field of SSL3_RECORD and
   restored ABI.

Approved by:	re (kib)
</content>
</entry>
<entry>
<title>Merge OpenSSL 0.9.8y.  This is a direct commit to stable/8 as HEAD is on a</title>
<updated>2013-03-08T17:28:40Z</updated>
<author>
<name>Xin LI</name>
<email>delphij@FreeBSD.org</email>
</author>
<published>2013-03-08T17:28:40Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=cb3cabcbdf20e35bf2f88fbfebbd672a48ecd0e9'/>
<id>urn:sha1:cb3cabcbdf20e35bf2f88fbfebbd672a48ecd0e9</id>
<content type='text'>
different release now.
</content>
</entry>
<entry>
<title>MFC r244975:</title>
<updated>2013-01-16T00:54:51Z</updated>
<author>
<name>Xin LI</name>
<email>delphij@FreeBSD.org</email>
</author>
<published>2013-01-16T00:54:51Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=e491af347eb227584e0833d41b8157f5db885b6f'/>
<id>urn:sha1:e491af347eb227584e0833d41b8157f5db885b6f</id>
<content type='text'>
Indicate that we are using OpenSSL with some local modifications.
</content>
</entry>
<entry>
<title>MFC r244974:</title>
<updated>2013-01-16T00:52:36Z</updated>
<author>
<name>Xin LI</name>
<email>delphij@FreeBSD.org</email>
</author>
<published>2013-01-16T00:52:36Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=3cc7419bc9556680ea362629a72a54551bc5fd57'/>
<id>urn:sha1:3cc7419bc9556680ea362629a72a54551bc5fd57</id>
<content type='text'>
MFV r244973:

  Integrate OpenSSL changeset 22950 (appro):

        bn_word.c: fix overflow bug in BN_add_word.
</content>
</entry>
<entry>
<title>MFC r240339: openssl: change SHLIB_VERSION_NUMBER to reflect the reality</title>
<updated>2012-10-14T07:28:42Z</updated>
<author>
<name>Andriy Gapon</name>
<email>avg@FreeBSD.org</email>
</author>
<published>2012-10-14T07:28:42Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=6a624562397a58e4770b28ba4fd2b762d078328a'/>
<id>urn:sha1:6a624562397a58e4770b28ba4fd2b762d078328a</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MFC:	r237657, r237658, r237666</title>
<updated>2012-07-02T16:14:35Z</updated>
<author>
<name>Jung-uk Kim</name>
<email>jkim@FreeBSD.org</email>
</author>
<published>2012-07-02T16:14:35Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=833689a92bd0dfdd74c7f6da043bdf1e64ae9757'/>
<id>urn:sha1:833689a92bd0dfdd74c7f6da043bdf1e64ae9757</id>
<content type='text'>
Merge OpenSSL 0.9.8x and regen manual pages.
</content>
</entry>
<entry>
<title>Update the previous openssl fix. [12:01]</title>
<updated>2012-05-30T12:01:28Z</updated>
<author>
<name>Bjoern A. Zeeb</name>
<email>bz@FreeBSD.org</email>
</author>
<published>2012-05-30T12:01:28Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=447e2b9b61562760b7348af4a2e047426b4624b7'/>
<id>urn:sha1:447e2b9b61562760b7348af4a2e047426b4624b7</id>
<content type='text'>
Fix a bug in crypt(3) ignoring characters of a passphrase. [12:02]

Security:	FreeBSD-SA-12:01.openssl (revised)
Security:	FreeBSD-SA-12:02.crypt
Approved by:	so (bz, simon)
</content>
</entry>
<entry>
<title>Fix multiple OpenSSL vulnerabilities.</title>
<updated>2012-05-03T15:25:11Z</updated>
<author>
<name>Bjoern A. Zeeb</name>
<email>bz@FreeBSD.org</email>
</author>
<published>2012-05-03T15:25:11Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=b5b482d053f2c57cc46d2074651af23de06c6bb0'/>
<id>urn:sha1:b5b482d053f2c57cc46d2074651af23de06c6bb0</id>
<content type='text'>
Security:	CVE-2011-4576, CVE-2011-4619, CVE-2011-4109
Security:	CVE-2012-0884, CVE-2012-2110
Security:	FreeBSD-SA-12:01.openssl
Approved by:	so (bz,simon)
</content>
</entry>
<entry>
<title>MFC r225446:</title>
<updated>2011-09-08T16:22:58Z</updated>
<author>
<name>Xin LI</name>
<email>delphij@FreeBSD.org</email>
</author>
<published>2011-09-08T16:22:58Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=2f6ad55a9845712ffb4d573da02c239d1e83c230'/>
<id>urn:sha1:2f6ad55a9845712ffb4d573da02c239d1e83c230</id>
<content type='text'>
Fix SSL memory handlig for (EC)DH cipher suites, in particular for
multi-threaded use of ECDH.

Security:	CVE-2011-3210
Reviewed by:	stas
Obtained from:	OpenSSL CVS
</content>
</entry>
<entry>
<title>MFC 218625:</title>
<updated>2011-02-13T10:22:43Z</updated>
<author>
<name>Simon L. B. Nielsen</name>
<email>simon@FreeBSD.org</email>
</author>
<published>2011-02-13T10:22:43Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=31ff3f195e5c8273d662ed2331992d88015bd977'/>
<id>urn:sha1:31ff3f195e5c8273d662ed2331992d88015bd977</id>
<content type='text'>
 Fix Incorrectly formatted ClientHello SSL/TLS handshake messages could
 cause OpenSSL to parse past the end of the message.

 Note: Applications are only affected if they act as a server and call
 SSL_CTX_set_tlsext_status_cb on the server's SSL_CTX. This includes
 Apache httpd &gt;= 2.3.3, if configured with "SSLUseStapling On".

The very quick MFC is done to get this fix into 7.4 / 8.2.

Discussed with:	re
Approved by:	so (simon, for "instant" MFC)
Obtained from:	OpenSSL CVS
Security:	http://www.openssl.org/news/secadv_20110208.txt
Security:	CVE-2011-0014
</content>
</entry>
</feed>
