]> code.ossystems Code Review - openembedded-core.git/commit
openssl: Security fix CVE-2016-0800
authorArmin Kuster <akuster@mvista.com>
Wed, 2 Mar 2016 07:37:21 +0000 (23:37 -0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Thu, 3 Mar 2016 10:38:38 +0000 (10:38 +0000)
commitc99ed6b73f397906475c09323b03b53deb83de55
treea3427712a05e145f82018dc10006c46dcb46f576
parent4d0ebfd77c07475494665dde962137934dd2194a
openssl: Security fix CVE-2016-0800

CVE-2016-0800 SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)

https://www.openssl.org/news/secadv/20160301.txt

Signed-off-by: Armin Kuster <akuster@mvista.com>
Not required for master, an update to 1.0.2g has been submitted.
Backport to fido is required.
Signed-off-by: Joshua Lock <joshua.g.lock@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-connectivity/openssl/openssl/CVE-2016-0800.patch [new file with mode: 0644]
meta/recipes-connectivity/openssl/openssl/CVE-2016-0800_2.patch [new file with mode: 0644]
meta/recipes-connectivity/openssl/openssl/CVE-2016-0800_3.patch [new file with mode: 0644]
meta/recipes-connectivity/openssl/openssl_1.0.2d.bb