Hello community, here is the log from the commit of package sslscan for openSUSE:Factory checked in at 2016-11-18 22:02:05 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/sslscan (Old) and /work/SRC/openSUSE:Factory/.sslscan.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "sslscan" Changes: -------- --- /work/SRC/openSUSE:Factory/sslscan/sslscan.changes 2016-11-12 13:01:34.000000000 +0100 +++ /work/SRC/openSUSE:Factory/.sslscan.new/sslscan.changes 2016-11-18 22:02:06.000000000 +0100 @@ -1,0 +2,5 @@ +Mon Oct 31 13:51:36 UTC 2016 - [email protected] + +- SSL_MODE_SEND_FALLBACK_SCSV.patch: Add patch to treat SSL_MODE_SEND_FALLBACK_SCSV conditionally. + +------------------------------------------------------------------- New: ---- SSL_MODE_SEND_FALLBACK_SCSV.patch ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ sslscan.spec ++++++ --- /var/tmp/diff_new_pack.Hk93gF/_old 2016-11-18 22:02:07.000000000 +0100 +++ /var/tmp/diff_new_pack.Hk93gF/_new 2016-11-18 22:02:07.000000000 +0100 @@ -26,6 +26,7 @@ Source: https://github.com/rbsec/sslscan/archive/%{version}-rbsec.tar.gz#/%{name}-%{version}-rbsec.tar.gz #Patches copied from Debian package Patch1: fedora-sslscan-patents.patch +Patch2: SSL_MODE_SEND_FALLBACK_SCSV.patch BuildRequires: openssl-devel BuildRoot: %{_tmppath}/%{name}-%{version}-build @@ -39,6 +40,7 @@ %if %{defined fedora} %patch1 -p1 %endif +%patch2 -p1 %build make CFLAGS="%{optflags}" %{?_smp_mflags} ++++++ SSL_MODE_SEND_FALLBACK_SCSV.patch ++++++ diff -rup sslscan-1.11.7-rbsec.orig/sslscan.c sslscan-1.11.7-rbsec/sslscan.c --- sslscan-1.11.7-rbsec.orig/sslscan.c 2016-06-13 14:42:11.000000000 +0200 +++ sslscan-1.11.7-rbsec/sslscan.c 2016-10-31 14:28:02.727501941 +0100 @@ -873,7 +873,11 @@ int testFallback(struct sslCheckOptions { if (downgraded) { +#ifdef SSL_MODE_SEND_FALLBACK_SCSV SSL_CTX_set_mode(options->ctx, SSL_MODE_SEND_FALLBACK_SCSV); +#else + ; +#endif } if (SSL_CTX_set_cipher_list(options->ctx, "ALL:COMPLEMENTOFALL") != 0) {
