]> code.ossystems Code Review - openembedded-core.git/commit
openssl: use upstream fix for CVE-2014-0198
authorPaul Eggleton <paul.eggleton@linux.intel.com>
Mon, 9 Jun 2014 15:53:44 +0000 (16:53 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 10 Jun 2014 16:05:53 +0000 (17:05 +0100)
commit21fa437a37dad14145b6c8c8c16c95f1b074e09c
tree417877f3f1da9179759b28d0f87140a4e95791aa
parentc707b3ea9e1fbff2c6a82670e4b1af2b4f53d5e2
openssl: use upstream fix for CVE-2014-0198

This replaces the fix for CVE-2014-0198 with one borrowed from Fedora,
which is the same as the patch which was actually applied upstream for
the issue, i.e.:

https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=b107586c0c3447ea22dba8698ebbcd81bb29d48c

Signed-off-by: Paul Eggleton <paul.eggleton@linux.intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-1.0.1e-cve-2014-0198.patch [new file with mode: 0644]
meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-CVE-2014-0198-fix.patch [deleted file]
meta/recipes-connectivity/openssl/openssl_1.0.1e.bb