| Commit message (Collapse) | Author | Age | Files | Lines |
| |
|
|
|
|
|
| |
Security: CVE-2014-0198
Security: http://seclists.org/oss-sec/2014/q2/232
Security: https://rt.openssl.org/Ticket/Display.html?user=guest&pass=guest&id=3321
Obtained from: OpenBSD
|
| |
|
|
|
|
|
| |
https://rt.openssl.org/Ticket/Display.html?id=2167&user=guest&pass=guest
http://www.tedunangst.com/flak/post/analysis-of-openssl-freelist-reuse
http://ftp.openbsd.org/pub/OpenBSD/patches/5.4/common/008_openssl.patch
Obtained from: OpenBSD
|
| |
|
|
| |
PR: 188486
|
| |
|
|
|
|
|
|
|
|
|
|
| |
- remove broken patches
- new fix for perl5.18
- fix option GMP
Security: http://www.openssl.org/news/vulnerabilities.html
Security: CVE-2013-4353
Security: CVE-2013-6449
Security: CVE-2013-6450
Security: 5aaa257e-772d-11e3-a65a-3c970e169bc2
|
| |
|
|
| |
Submitted by: Bryan Drewery
|
| | |
|
| | |
|
| |
|
|
|
| |
PR: 175663
Submitted by: bf
|
| |
|
|
|
|
| |
PR: 167350
Submitted by: Bryan Drewery
Obtained from: http://rt.openssl.org/Ticket/Display.html?id=2724&user=guest&pass=guest#lasttrans
|
| | |
|
| |
|
|
|
|
|
|
|
| |
Security: http://openssl.org/news/secadv_20110906.txt
- drop option TLS_EXTRACTOR, now in distribution
- add RFC-5705 patch
Obtained from: OpenBSD
|
| |
|
|
|
| |
Security: http://openssl.org/news/secadv_20101202.txt
Security: CVE-2010-4180
|
| |
|
|
|
|
|
|
|
|
|
| |
Security: http://openssl.org/news/secadv_20101116.txt
Security: CVE-2010-3864
PR: 152312
Submitted by: Alexander Wittig
- Fix regression in TLS handling
Obtained from: http://cvs.openssl.org/chngview?cn=19998
|
| |
|
|
|
| |
Security: CVE-2010-1633
this problem was already fixed in 1.0.0 with option WITH_DTLS_BUGS
|
| |
|
|
|
|
|
|
| |
Submitted by: Matthias Andree
Obtained from: http://rt.openssl.org/Ticket/Display.html?id=2234
- add more DTLS bugfixes
Obtained from: http://sctp.fh-muenster.de/
|
| |
|
|
|
|
| |
- regression tested on i386, amd64 and ia64
- use DIST_SUBDIR to resolve conflicts with old patchfiles
- new options DTLS_RENEGOTIATION, DTLS_HEARTBEAT, TLS_EXTRACTOR, SCTP
|
| |
|
|
|
|
|
|
|
|
| |
- support RFC5746
Security: CVE-2008-1678
Security: CVE-2009-1377
Security: CVE-2009-1378
Security: CVE-2009-1379
Approved by: portmgr (pav)
Feature safe: yes
|
| |
|
|
|
|
|
|
|
|
| |
- enable SSE2 optimisations
- fix thread option
- cleanup
- fix spelling
- pass no-zlib option
Submitted by: b.f.
|
| |
|
|
|
|
|
|
| |
http://cvs.openssl.org/chngview?cn=19068
http://www.openwall.com/lists/oss-security/2010/01/13/3
Security: CVE-2009-4355
Security: CVE-2008-1678
Obtained from: cvs.openssl.org
|
| |
|
|
|
| |
- revert Configure
- bump shared libs
|
| |
|
|
| |
Approved by: portmgr
|
| |
|
|
|
| |
Obtained from: openssl-1.0.0
Feature safe: yes
|
| |
|
|
|
|
| |
PR: 138881
Submitted by: Larry Baird
Feature safe: yes
|
| |
|
|
|
|
|
|
| |
- use options framework
- new option WITH_FIPS
add fips code
- new option WITH_SCTP
add SCTP support to openssl
|
| |
|
|
|
|
|
| |
Security: CVE-2009-1377
Security: CVE-2009-1378
Security: http://article.gmane.org/gmane.comp.security.oss.general/1769
PR: 134653
|
| |
|
|
|
|
|
|
|
| |
Security: http://www.openssl.org/news/secadv_20090325.txt
Security: CVE-2009-0590
Security: CVE-2009-0591 (port not affected)
Security: CVE-2009-0789
PR: 133156
Submitted by: Eygene Ryabinkin
|
| |
|
|
|
|
|
| |
- move patches from files-beta back to files
- FIPS disabled with force
- support for crypto_hw device cloning restored
- support for crypto_hw aes_256 restored
|
| |
|
|
|
|
| |
Security: CVE-2007-5135
Security: http://www.openssl.org/news/secadv_20071012.txt
Submitted by: Jung-uk Kim
|
| |
|
|
| |
md5 verified with distribution
|
| | |
|
| |
|
|
| |
Submitted by: textfield@yahoo.com
|
| | |
|
| |
|
|
|
| |
PR: 87419
Submitted by: Phil Oleson
|
| | |
|
| |
|
|
| |
Security: http://www.openssl.org/news/secadv_20051011.txt
|
| | |
|
| |
|
|
| |
Submitted by: phk
|
| | |
|
| |
|
|
|
|
|
|
|
| |
- remove harmfull -Wl,-Bsymbolic
strcmp did not work correctly,
and the initialisation of internal hashs was defunct.
Therefor serveral applications failed to find some of the ciphers.
e.G. openvpn, jabberd
|
| |
|
|
| |
- md5 verfied with website
|
| |
|
|
|
|
|
|
|
| |
to the crypto engine (assuming your card supports them).
This make the Hifn cards much more useful as AES-256 is
the default encryption for many client applications.
Submitted by: Spike Ilacqua
Obtained from: OpenBSD
|
| |
|
|
|
| |
PR: 69150
Submitted by: Konstantin Oznobihin
|
| |
|
|
| |
http://www.openssl.org/news/secadv_20040317.txt
|
| |
|
|
| |
- Fix manpages
|
| |
|
|
| |
Problem noted by: jarnold@knightridder.com
|
| | |
|
| | |
|
| |
|
|
|
|
|
|
| |
- OPENSSL_OVERWRITE_BASE
defaults to STABLE/CURRENT shared lib version
This solves problems when the share lib is deinstalled.
ports/50292
PR: 50292
|
| |
|
|
| |
marius@alchemy.franken.de
|
| |
|
|
| |
http://www.openssl.org/news/secadv_20030319.txt
|