Page MenuHomeSolus

Update openssl to 1.0.2n to address vulnerabilities
ClosedPublic

Authored by kyrios123 on Dec 8 2017, 8:10 AM.
Tags
  • Restricted Project
Referenced Files
F11073485: D1579.diff
Sat, Aug 12, 4:34 AM
F10816904: D1579.id.diff
Jun 1 2023, 4:28 AM
F10779691: D1579.diff
May 24 2023, 7:33 PM
F10721290: D1579.id.diff
May 6 2023, 9:03 AM
F10690827: D1579.id3895.diff
Apr 23 2023, 3:40 AM
Subscribers

Details

Summary
  • Read/write after SSL object in error state (CVE-2017-3737)
  • rsaz_1024_mul_avx2 overflow bug on x86_64 (CVE-2017-3738)

Signed-off-by: Pierre-Yves <pyu@riseup.net>

Test Plan
  • openssl s_client -connect smtp.gmail.com:587 -starttls smtp

Diff Detail

Repository
R2257 openssl
Branch
master
Lint
No Lint Coverage
Unit
No Test Coverage

Event Timeline

ikey added a subscriber: ikey.

LGTM!

This revision is now accepted and ready to land.Dec 8 2017, 9:48 AM
This revision was automatically updated to reflect the committed changes.