diff options
author | Jung-uk Kim <jkim@FreeBSD.org> | 2014-08-07 16:51:50 +0000 |
---|---|---|
committer | Jung-uk Kim <jkim@FreeBSD.org> | 2014-08-07 16:51:50 +0000 |
commit | 6846a6dfd06216c71f1c9d1da1fa957d0f9ce016 (patch) | |
tree | b4301f78efe63b5c59d963d87744b03588432bd4 /NEWS | |
parent | f2c8f580eb02fc9ff060de5b242c825113c7a065 (diff) | |
download | src-6846a6dfd06216c71f1c9d1da1fa957d0f9ce016.tar.gz src-6846a6dfd06216c71f1c9d1da1fa957d0f9ce016.zip |
Import 0.9.8zb.vendor/openssl/0.9.8zb
Notes
Notes:
svn path=/vendor-crypto/openssl/dist-0.9.8/; revision=269672
svn path=/vendor-crypto/openssl/0.9.8zb/; revision=269673; tag=vendor/openssl/0.9.8zb
Diffstat (limited to 'NEWS')
-rw-r--r-- | NEWS | 16 |
1 files changed, 16 insertions, 0 deletions
@@ -5,6 +5,22 @@ This file gives a brief overview of the major changes between each OpenSSL release. For more details please read the CHANGES file. + Major changes between OpenSSL 0.9.8za and OpenSSL 0.9.8zb [6 Aug 2014]: + + o Fix for CVE-2014-3510 + o Fix for CVE-2014-3507 + o Fix for CVE-2014-3506 + o Fix for CVE-2014-3505 + o Fix for CVE-2014-3508 + + Known issues in OpenSSL 0.9.8za: + + o Compilation failure of s3_pkt.c on some platforms due to missing + <limits.h> include. Fixed in 0.9.8zb-dev. + o FIPS capable link failure with missing symbol BN_consttime_swap. + Fixed in 0.9.8zb-dev. Workaround is to compile with no-ec: the EC + algorithms are not FIPS approved in OpenSSL 0.9.8 anyway. + Major changes between OpenSSL 0.9.8y and OpenSSL 0.9.8za [5 Jun 2014]: o Fix for CVE-2014-0224 |