ok markus@ On Thu, 4 Mar 2010, Damien Miller wrote:
> CVSROOT: /cvs > Module name: src > Changes by: d...@cvs.openbsd.org 2010/03/04 04:02:42 > > Modified files: > lib/libssl/src/crypto/bn: bn_div.c bn_gf2m.c > lib/libssl/src/crypto/ec: ec2_smpl.c > lib/libssl/src/engines: e_ubsec.c > > Log message: > cherrypick patch from OpenSSL 0.9.8m: > > *) Always check bn_wexpend() return values for failure. (CVE-2009-3245) > [Martin Olsson, Neel Mehta]