]> code.ossystems Code Review - openembedded-core.git/commit
openssl: use upstream fix for CVE-2014-0198
authorPaul Eggleton <paul.eggleton@linux.intel.com>
Mon, 9 Jun 2014 15:51:17 +0000 (16:51 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 10 Jun 2014 16:10:35 +0000 (17:10 +0100)
commitd3d6eee3353fcce09e1d6b0181a0ea7b52b7a937
tree6dc5efd43ec7baf56b4fe43c31fc956cb5ae7bc9
parent5bcb997663a6bd7a4d7395dcdb5e027d7f2bab81
openssl: use upstream fix for CVE-2014-0198

This replaces the fix for CVE-2014-0198 with one borrowed from Fedora,
which is the same as the patch which was actually applied upstream for
the issue, i.e.:

https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=b107586c0c3447ea22dba8698ebbcd81bb29d48c

Signed-off-by: Paul Eggleton <paul.eggleton@linux.intel.com>
Signed-off-by: Saul Wold <sgw@linux.intel.com>
meta/recipes-connectivity/openssl/openssl/openssl-1.0.1e-cve-2014-0198.patch [new file with mode: 0644]
meta/recipes-connectivity/openssl/openssl/openssl-CVE-2014-0198-fix.patch [deleted file]
meta/recipes-connectivity/openssl/openssl_1.0.1g.bb