#4816: openssl-1.1.1j
--------------------+-----------------------
Reporter: renodr | Owner: lfs-book
Type: task | Status: new
Priority: high | Milestone: 10.1
Component: Book | Version: SVN
Severity: normal | Resolution:
Keywords: |
--------------------+-----------------------
Changes (by renodr):
* priority: normal => high
Comment:
{{{
Major changes between OpenSSL 1.1.1i and OpenSSL 1.1.1j [16 Feb 2021]
Fixed a NULL pointer deref in the X509_issuer_and_serial_hash()
function (CVE-2021-23841)
Fixed the RSA_padding_check_SSLv23() function and the
RSA_SSLV23_PADDING padding mode to correctly check for rollback attacks
Fixed an overflow in the EVP_CipherUpdate, EVP_EncryptUpdate and
EVP_DecryptUpdate functions (CVE-2021-23840)
Fixed SRP_Calc_client_key so that it runs in constant time
}}}
--
Ticket URL: <http://wiki.linuxfromscratch.org/lfs/ticket/4816#comment:1>
LFS Trac <http://wiki.linuxfromscratch.org/lfs/>
Linux From Scratch: Your Distro, Your Rules.
--
http://lists.linuxfromscratch.org/listinfo/lfs-book
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page