0bd0de7d43
This version fixes 2 security vulnerabilities, among other changes: - CVE-2021-3450: problem with verifying a certificate chain when using the X509_V_FLAG_X509_STRICT flag. - CVE-2021-3449: OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. Signed-off-by: Eneas U de Queiroz <cotequeiroz@gmail.com> |
||
---|---|---|
.. | ||
100-Configure-afalg-support.patch | ||
110-openwrt_targets.patch | ||
120-strip-cflags-from-binary.patch | ||
130-dont-build-tests-fuzz.patch | ||
140-allow-prefer-chacha20.patch | ||
150-openssl.cnf-add-engines-conf.patch | ||
400-eng_devcrypto-save-ioctl-if-EVP_MD_.FLAG_ONESHOT.patch | ||
410-eng_devcrypto-add-configuration-options.patch | ||
420-eng_devcrypto-add-command-to-dump-driver-info.patch | ||
430-e_devcrypto-make-the-dev-crypto-engine-dynamic.patch | ||
500-e_devcrypto-default-to-not-use-digests-in-engine.patch | ||
510-e_devcrypto-ignore-error-when-closing-session.patch |