]> code.ossystems Code Review - openembedded-core.git/commit
gnutls: fixed CVE-2020-13777
authorhaiqing <haiqing.bai@windriver.com>
Mon, 15 Jun 2020 08:15:24 +0000 (16:15 +0800)
committerAnuj Mittal <anuj.mittal@intel.com>
Mon, 29 Jun 2020 05:49:53 +0000 (13:49 +0800)
commit86870cd2ff3555161ea5bb434740338ec20495a0
tree6a32ee271557055a162168259b2b5c8c516002a1
parent684307688eb0c1a98be8885164ecc8f578a36cf8
gnutls: fixed CVE-2020-13777

GnuTLS 3.6.x before 3.6.14 uses incorrect cryptography
for encrypting a session ticket

Backport the patch from upstream:
https://gitlab.com/gnutls/gnutls.git
commit c2646aeee94e71cb15c90a3147cf3b5b0ca158ca
commit 50ad8778a81f9421effa4c5a3b457f98e559b178
commit 3d7fae761e65e9d0f16d7247ee8a464d4fe002da

Signed-off-by: Haiqing Bai <Haiqing.Bai@windriver.com>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-support/gnutls/gnutls/CVE-2020-13777-a.patch [new file with mode: 0644]
meta/recipes-support/gnutls/gnutls/CVE-2020-13777-b.patch [new file with mode: 0644]
meta/recipes-support/gnutls/gnutls/CVE-2020-13777-c.patch [new file with mode: 0644]
meta/recipes-support/gnutls/gnutls_3.6.13.bb