aboutsummaryrefslogtreecommitdiff
path: root/doc/openssl.txt
diff options
context:
space:
mode:
authorSimon L. B. Nielsen <simon@FreeBSD.org>2007-10-18 20:19:33 +0000
committerSimon L. B. Nielsen <simon@FreeBSD.org>2007-10-18 20:19:33 +0000
commita0ddfe4e7233d81e88a86217b7653708db2720fa (patch)
tree18668034f47decf1b245c279a6825a76c0eb0425 /doc/openssl.txt
parentc30e4c61747efa38a51b4f5848b597da341fd0cd (diff)
downloadsrc-a0ddfe4e7233d81e88a86217b7653708db2720fa.tar.gz
src-a0ddfe4e7233d81e88a86217b7653708db2720fa.zip
Import DTLS security fix from upstream OpenSSL_0_9_8-stable branch.
From the OpenSSL advisory: Andy Polyakov discovered a flaw in OpenSSL's DTLS implementation which could lead to the compromise of clients and servers with DTLS enabled. DTLS is a datagram variant of TLS specified in RFC 4347 first supported in OpenSSL version 0.9.8. Note that the vulnerabilities do not affect SSL and TLS so only clients and servers explicitly using DTLS are affected. We believe this flaw will permit remote code execution. Security: CVE-2007-4995 Security: http://www.openssl.org/news/secadv_20071012.txt
Notes
Notes: svn path=/vendor-crypto/openssl/dist/; revision=172767
Diffstat (limited to 'doc/openssl.txt')
0 files changed, 0 insertions, 0 deletions