Package: openssl / 0.9.8o-4squeeze14

Metadata

Package Version Patches format
openssl 0.9.8o-4squeeze14 3.0 (quilt)

Patch series

view the series file
Patch File delta Description
ca.patch | (download)

apps/CA.pl.in | 2 2 + 0 - 0 !
1 file changed, 2 insertions(+)

---
config hurd.patch | (download)

config | 4 2 + 2 - 0 !
1 file changed, 2 insertions(+), 2 deletions(-)

---
debian targets.patch | (download)

Configure | 45 45 + 0 - 0 !
1 file changed, 45 insertions(+)

---
engines path.patch | (download)

Configure | 2 1 + 1 - 0 !
Makefile.org | 2 1 + 1 - 0 !
engines/Makefile | 10 5 + 5 - 0 !
3 files changed, 7 insertions(+), 7 deletions(-)

---
kfreebsd pipe.patch | (download)

crypto/perlasm/x86_64-xlate.pl | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

---
make targets.patch | (download)

Makefile.org | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

---
man dir.patch | (download)

Makefile.org | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

---
man section.patch | (download)

Makefile.org | 7 4 + 3 - 0 !
1 file changed, 4 insertions(+), 3 deletions(-)

---
no rpath.patch | (download)

Makefile.shared | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

---
no symbolic.patch | (download)

Makefile.shared | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

---
pic.patch | (download)

crypto/Makefile | 4 2 + 2 - 0 !
crypto/aes/asm/aes-586.pl | 13 10 + 3 - 0 !
crypto/des/asm/desboth.pl | 17 14 + 3 - 0 !
crypto/md5/Makefile | 3 2 + 1 - 0 !
crypto/perlasm/cbc.pl | 24 20 + 4 - 0 !
crypto/perlasm/x86_64-xlate.pl | 2 1 + 1 - 0 !
crypto/perlasm/x86unix.pl | 33 33 + 0 - 0 !
crypto/rc4/Makefile | 2 1 + 1 - 0 !
crypto/rc4/asm/rc4-x86_64.pl | 8 8 + 0 - 0 !
crypto/x86_64cpuid.pl | 4 4 + 0 - 0 !
10 files changed, 95 insertions(+), 15 deletions(-)

---
pkg config.patch | (download)

Makefile.org | 9 6 + 3 - 0 !
1 file changed, 6 insertions(+), 3 deletions(-)

---
valgrind.patch | (download)

crypto/rand/md_rand.c | 2 2 + 0 - 0 !
1 file changed, 2 insertions(+)

---
rc4 amd64.patch | (download)

Configure | 3 3 + 0 - 0 !
1 file changed, 3 insertions(+)

---
rehash crt.patch | (download)

tools/c_rehash.in | 12 9 + 3 - 0 !
1 file changed, 9 insertions(+), 3 deletions(-)

---
rehash_pod.patch | (download)

doc/apps/c_rehash.pod | 55 55 + 0 - 0 !
1 file changed, 55 insertions(+)

---
shared lib ext.patch | (download)

Configure | 3 2 + 1 - 0 !
1 file changed, 2 insertions(+), 1 deletion(-)

---
stddef.patch | (download)

crypto/sha/sha.h | 1 1 + 0 - 0 !
1 file changed, 1 insertion(+)

---
version script.patch | (download)

Configure | 2 2 + 0 - 0 !
engines/openssl.ld | 5 5 + 0 - 0 !
openssl.ld | 5 5 + 0 - 0 !
3 files changed, 12 insertions(+)

---
perl path.diff | (download)

Configure | 2 1 + 1 - 0 !
Netware/do_tests.pl | 2 1 + 1 - 0 !
VMS/VMSify-conf.pl | 2 1 + 1 - 0 !
apps/progs.pl | 2 1 + 1 - 0 !
crypto/aes/asm/aes-586.pl | 2 1 + 1 - 0 !
crypto/aes/asm/aes-x86_64.pl | 2 1 + 1 - 0 !
crypto/asn1/charmap.pl | 2 1 + 1 - 0 !
crypto/bf/asm/bf-586.pl | 2 1 + 1 - 0 !
crypto/bf/asm/bf-686.pl | 2 1 + 1 - 0 !
crypto/bn/asm/bn-586.pl | 2 1 + 1 - 0 !
crypto/bn/asm/co-586.pl | 2 1 + 1 - 0 !
crypto/bn/asm/mo-586.pl | 2 1 + 1 - 0 !
crypto/bn/asm/ppc.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86/add.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86/comba.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86/div.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86/mul.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86/mul_add.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86/sqr.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86/sub.pl | 2 1 + 1 - 0 !
crypto/bn/asm/x86_64-mont.pl | 2 1 + 1 - 0 !
crypto/bn/bn_prime.pl | 2 1 + 1 - 0 !
crypto/cast/asm/cast-586.pl | 2 1 + 1 - 0 !
crypto/conf/keysets.pl | 2 1 + 1 - 0 !
crypto/des/asm/crypt586.pl | 2 1 + 1 - 0 !
crypto/des/asm/des-586.pl | 2 1 + 1 - 0 !
crypto/des/asm/des686.pl | 2 1 + 1 - 0 !
crypto/des/asm/desboth.pl | 2 1 + 1 - 0 !
crypto/lhash/num.pl | 2 1 + 1 - 0 !
crypto/md5/asm/md5-586.pl | 2 1 + 1 - 0 !
crypto/md5/asm/md5-x86_64.pl | 2 1 + 1 - 0 !
crypto/objects/obj_dat.pl | 2 1 + 1 - 0 !
crypto/objects/objects.pl | 2 1 + 1 - 0 !
crypto/perlasm/cbc.pl | 2 1 + 1 - 0 !
crypto/perlasm/x86_64-xlate.pl | 2 1 + 1 - 0 !
crypto/perlasm/x86asm.pl | 2 1 + 1 - 0 !
crypto/perlasm/x86ms.pl | 2 1 + 1 - 0 !
crypto/perlasm/x86nasm.pl | 2 1 + 1 - 0 !
crypto/perlasm/x86unix.pl | 2 1 + 1 - 0 !
crypto/rc4/asm/rc4-586.pl | 2 1 + 1 - 0 !
crypto/rc4/asm/rc4-x86_64.pl | 2 1 + 1 - 0 !
crypto/rc5/asm/rc5-586.pl | 2 1 + 1 - 0 !
crypto/ripemd/asm/rmd-586.pl | 2 1 + 1 - 0 !
crypto/sha/asm/sha1-586.pl | 2 1 + 1 - 0 !
crypto/sha/asm/sha1-ia64.pl | 2 1 + 1 - 0 !
crypto/sha/asm/sha1-x86_64.pl | 2 1 + 1 - 0 !
crypto/sha/asm/sha512-ia64.pl | 2 1 + 1 - 0 !
crypto/sha/asm/sha512-sse2.pl | 2 1 + 1 - 0 !
crypto/sha/asm/sha512-x86_64.pl | 2 1 + 1 - 0 !
crypto/x86_64cpuid.pl | 2 1 + 1 - 0 !
crypto/x86cpuid.pl | 2 1 + 1 - 0 !
demos/b64.pl | 2 1 + 1 - 0 !
demos/tunala/configure.in | 2 1 + 1 - 0 !
fips/fipsalgtest.pl | 2 1 + 1 - 0 !
fips/mkfipsscr.pl | 2 1 + 1 - 0 !
ms/cmp.pl | 2 1 + 1 - 0 !
ms/segrenam.pl | 2 1 + 1 - 0 !
ms/uplink.pl | 2 1 + 1 - 0 !
os2/backwardify.pl | 2 1 + 1 - 0 !
test/cms-examples.pl | 2 1 + 1 - 0 !
test/cms-test.pl | 2 1 + 1 - 0 !
times/091/mips-rel.pl | 2 1 + 1 - 0 !
util/add_cr.pl | 2 1 + 1 - 0 !
util/arx.pl | 2 1 + 1 - 0 !
util/ck_errf.pl | 2 1 + 1 - 0 !
util/clean-depend.pl | 2 1 + 1 - 0 !
util/copy.pl | 2 1 + 1 - 0 !
util/deleof.pl | 2 1 + 1 - 0 !
util/dirname.pl | 2 1 + 1 - 0 !
util/err-ins.pl | 2 1 + 1 - 0 !
util/files.pl | 2 1 + 1 - 0 !
util/mk1mf.pl | 2 1 + 1 - 0 !
util/mkdef.pl | 2 1 + 1 - 0 !
util/mkdir-p.pl | 2 1 + 1 - 0 !
util/mkerr.pl | 2 1 + 1 - 0 !
util/mkfiles.pl | 2 1 + 1 - 0 !
util/mklink.pl | 2 1 + 1 - 0 !
util/mksdef.pl | 2 1 + 1 - 0 !
util/mkstack.pl | 2 1 + 1 - 0 !
util/perlpath.pl | 2 1 + 1 - 0 !
util/pl/BC-32.pl | 2 1 + 1 - 0 !
util/pl/Mingw32.pl | 2 1 + 1 - 0 !
util/pl/OS2-EMX.pl | 2 1 + 1 - 0 !
util/pl/VC-32.pl | 2 1 + 1 - 0 !
util/pl/linux.pl | 2 1 + 1 - 0 !
util/pl/netware.pl | 2 1 + 1 - 0 !
util/pl/ultrix.pl | 2 1 + 1 - 0 !
util/pl/unix.pl | 2 1 + 1 - 0 !
util/pod2man.pl | 2 1 + 1 - 0 !
util/selftest.pl | 2 1 + 1 - 0 !
util/sp-diff.pl | 2 1 + 1 - 0 !
util/src-dep.pl | 2 1 + 1 - 0 !
util/tab_num.pl | 2 1 + 1 - 0 !
94 files changed, 94 insertions(+), 94 deletions(-)

 change the perl path's to /usr/bin/perl

This is the result of running:
perl util/perlpath.pl /usr/bin

CVE 2010 2939.patch | (download)

ssl/s3_clnt.c | 1 1 + 0 - 0 !
1 file changed, 1 insertion(+)

---
CVE 2010 3864.patch | (download)

ssl/t1_lib.c | 18 14 + 4 - 0 !
1 file changed, 14 insertions(+), 4 deletions(-)

---
CVE 2010 4180.patch | (download)

doc/ssl/SSL_CTX_set_options.pod | 13 1 + 12 - 0 !
ssl/s3_clnt.c | 3 3 + 0 - 0 !
ssl/s3_srvr.c | 5 5 + 0 - 0 !
3 files changed, 9 insertions(+), 12 deletions(-)

---
CVE 2011 0014.patch | (download)

ssl/t1_lib.c | 8 7 + 1 - 0 !
1 file changed, 7 insertions(+), 1 deletion(-)

---
block_diginotar.patch | (download)

crypto/x509/x509_vfy.c | 27 27 + 0 - 0 !
1 file changed, 27 insertions(+)

 make x509_verify_cert indicate that any certificate whose
 name contains "DigiNotar" is revoked.
block_digicert_malaysia.patch | (download)

crypto/x509/x509_vfy.c | 7 4 + 3 - 0 !
1 file changed, 4 insertions(+), 3 deletions(-)

 make x509_verify_cert indicate that any certificate whose
 name contains "Digicert Sdn. Bhd." (from Malaysia) is revoked.
CVE 2011 1945.patch | (download)

crypto/ecdsa/ecs_ossl.c | 8 8 + 0 - 0 !
1 file changed, 8 insertions(+)

 fix cve-2011-1945, timing attacks against ecdhe_ecdsa makes
 it easier to determine private keys.
CVE 2011 3210.patch | (download)

ssl/s3_lib.c | 6 6 + 0 - 0 !
ssl/s3_srvr.c | 22 15 + 7 - 0 !
2 files changed, 21 insertions(+), 7 deletions(-)

 fix ssl memory handling for (ec)dh ciphersuites, in
 particular for multi-threaded use of ECDH.
CVE 2011 4108.patch | (download)

ssl/d1_pkt.c | 25 16 + 9 - 0 !
1 file changed, 16 insertions(+), 9 deletions(-)

---
CVE 2011 4109.patch | (download)

crypto/x509v3/pcy_map.c | 10 6 + 4 - 0 !
crypto/x509v3/pcy_tree.c | 5 4 + 1 - 0 !
2 files changed, 10 insertions(+), 5 deletions(-)

---
CVE 2011 4619.patch | (download)

ssl/s3_srvr.c | 9 9 + 0 - 0 !
ssl/ssl.h | 2 2 + 0 - 0 !
ssl/ssl3.h | 11 11 + 0 - 0 !
ssl/ssl_err.c | 4 3 + 1 - 0 !
4 files changed, 25 insertions(+), 1 deletion(-)

---
CVE 2011 4576.patch | (download)

ssl/s3_enc.c | 3 3 + 0 - 0 !
1 file changed, 3 insertions(+)

---
CVE 2011 4577.patch | (download)

crypto/x509v3/v3_addr.c | 74 47 + 27 - 0 !
1 file changed, 47 insertions(+), 27 deletions(-)

---
dtls fragment alert.patch | (download)

ssl/d1_both.c | 15 13 + 2 - 0 !
1 file changed, 13 insertions(+), 2 deletions(-)

---
CVE 2012 0050.patch | (download)

ssl/d1_pkt.c | 17 7 + 10 - 0 !
1 file changed, 7 insertions(+), 10 deletions(-)

---
CVE 2012 0884.patch | (download)

apps/cms.c | 4 4 + 0 - 0 !
crypto/cms/cms.h | 1 1 + 0 - 0 !
crypto/cms/cms_enc.c | 60 46 + 14 - 0 !
crypto/cms/cms_env.c | 12 10 + 2 - 0 !
crypto/cms/cms_lcl.h | 2 2 + 0 - 0 !
crypto/cms/cms_smime.c | 37 33 + 4 - 0 !
crypto/pkcs7/pk7_doit.c | 73 53 + 20 - 0 !
crypto/pkcs7/pk7_smime.c | 19 17 + 2 - 0 !
8 files changed, 166 insertions(+), 42 deletions(-)

---
CVE 2012 1165.patch | (download)

crypto/asn1/asn_mime.c | 5 5 + 0 - 0 !
1 file changed, 5 insertions(+)

---
CVE 2012 2110.patch | (download)

crypto/asn1/a_d2i_fp.c | 54 40 + 14 - 0 !
crypto/buffer/buffer.c | 17 17 + 0 - 0 !
crypto/mem.c | 4 4 + 0 - 0 !
3 files changed, 61 insertions(+), 14 deletions(-)

---
CVE 2012 2131.patch | (download)

crypto/buffer/buffer.c | 10 10 + 0 - 0 !
1 file changed, 10 insertions(+)

---
CVE 2012 2333.patch | (download)

ssl/d1_enc.c | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

---
CVE 2013 0169.patch | (download)

crypto/cryptlib.c | 16 16 + 0 - 0 !
crypto/crypto.h | 7 7 + 0 - 0 !
crypto/o_init.c | 14 14 + 0 - 0 !
crypto/rsa/rsa_oaep.c | 2 1 + 1 - 0 !
ssl/Makefile | 4 2 + 2 - 0 !
ssl/d1_enc.c | 63 21 + 42 - 0 !
ssl/d1_pkt.c | 85 53 + 32 - 0 !
ssl/s2_clnt.c | 2 1 + 1 - 0 !
ssl/s2_pkt.c | 3 1 + 2 - 0 !
ssl/s3_both.c | 2 1 + 1 - 0 !
ssl/s3_cbc.c | 783 783 + 0 - 0 !
ssl/s3_enc.c | 122 80 + 42 - 0 !
ssl/s3_pkt.c | 98 52 + 46 - 0 !
ssl/ssl_locl.h | 37 37 + 0 - 0 !
ssl/t1_enc.c | 155 74 + 81 - 0 !
ssl/t1_lib.c | 2 1 + 1 - 0 !
test/testssl | 17 17 + 0 - 0 !
util/libeay.num | 1 1 + 0 - 0 !
18 files changed, 1162 insertions(+), 251 deletions(-)

 fix cve-2013-0169.patch
CVE 2013 0166.patch | (download)

crypto/asn1/a_verify.c | 6 6 + 0 - 0 !
crypto/ocsp/ocsp_vfy.c | 9 6 + 3 - 0 !
2 files changed, 12 insertions(+), 3 deletions(-)

 cve-2013-0166

    Don't try and verify signatures if key is NULL (CVE-2013-0166)
    Add additional check to catch this in ASN1_item_verify too.