Re: [OpenWrt-Devel] [PATCH] openssl: version bump

2014-06-06 Thread John Crispin
On 06/06/2014 01:00, Florian Fainelli wrote: On Jun 5, 2014 2:54 PM, joerg jungermann j...@borkum.net mailto:j...@borkum.net wrote: today appeared another serious vulnerability in openssl. More info is here http://ccsinjection.lepidum.co.jp. Users are advised to update to openssl 1.0.1h.

Re: [OpenWrt-Devel] [PATCH] openssl: version bump

2014-06-06 Thread Gert Doering
Hi, On Thu, Jun 05, 2014 at 11:54:40PM +0200, joerg jungermann wrote: today appeared another serious vulnerability in openssl. More info is here http://ccsinjection.lepidum.co.jp. Users are advised to update to openssl 1.0.1h. Thank you for your patch, it was committed in r41026 and

[OpenWrt-Devel] [PATCH] openssl: version bump

2014-06-05 Thread Martin Strbačka
Hello, today appeared another serious vulnerability in openssl. More info is here http://ccsinjection.lepidum.co.jp. Users are advised to update to openssl 1.0.1h. Signed-off-by: Martin Strbacka martin.strba...@nic.cz --- diff --git a/package/libs/openssl/Makefile b/package/libs/openssl/Makefile

Re: [OpenWrt-Devel] [PATCH] openssl: version bump

2014-06-05 Thread Hauke Mehrtens
On 06/05/2014 03:13 PM, Martin Strbačka wrote: Hello, today appeared another serious vulnerability in openssl. More info is here http://ccsinjection.lepidum.co.jp. Users are advised to update to openssl 1.0.1h. Signed-off-by: Martin Strbacka martin.strba...@nic.cz --- Thank you for your

Re: [OpenWrt-Devel] [PATCH] openssl: version bump

2014-06-05 Thread joerg jungermann
today appeared another serious vulnerability in openssl. More info is here http://ccsinjection.lepidum.co.jp. Users are advised to update to openssl 1.0.1h. Thank you for your patch, it was committed in r41026 and 41027. Will there be a backport to AA 12.09? best regards -- Joerg

Re: [OpenWrt-Devel] [PATCH] openssl: version bump

2014-06-05 Thread Florian Fainelli
On Jun 5, 2014 2:54 PM, joerg jungermann j...@borkum.net wrote: today appeared another serious vulnerability in openssl. More info is here http://ccsinjection.lepidum.co.jp. Users are advised to update to openssl 1.0.1h. Thank you for your patch, it was committed in r41026 and 41027.