CVSROOT: /cvs Module name: ports Changes by: [email protected] 2015/01/20 02:47:47
Modified files:
security/polarssl: Makefile
Added files:
security/polarssl/patches: patch-library_asn1parse_c
Log message:
Patch PolarSSL for CVE-2015-1182.
An error during parsing of an ASN.1 sequence (triggerable during certificate
parsing) results in an uninitialized pointer being freed.
https://polarssl.org/tech-updates/security-advisories/polarssl-security-advisory-2014-04
