Revision (<<< Hide revision tags) (Show revision tags >>>) Date Author Comments
Revision tags: release/13.4.0-p5, release/13.5.0-p1, release/14.2.0-p3, release/13.5.0, release/14.2.0-p2, release/14.1.0-p8, release/13.4.0-p4, release/14.1.0-p7, release/14.2.0-p1, release/13.4.0-p3, release/14.2.0, release/13.4.0, release/14.1.0, release/13.3.0
# c9488674 02-Feb-2024 Cy Schubert <[email protected]>

OpenSSL: Vendor import of OpenSSL 3.0.13

* Fixed PKCS12 Decoding crashes ([CVE-2024-0727])
* Fixed Excessive time spent checking invalid RSA public keys
([CVE-2023-6237])
* Fixed POLY1305 MAC

OpenSSL: Vendor import of OpenSSL 3.0.13

* Fixed PKCS12 Decoding crashes ([CVE-2024-0727])
* Fixed Excessive time spent checking invalid RSA public keys
([CVE-2023-6237])
* Fixed POLY1305 MAC implementation corrupting vector registers on
PowerPC CPUs which support PowerISA 2.07 ([CVE-2023-6129])
* Fix excessive time spent in DH check / generation with large Q
parameter value ([CVE-2023-5678])

Release notes can be found at
https://www.openssl.org/news/openssl-3.0-notes.html.

Approved by: emaste

Merge commit '9dd13e84fa8eca8f3462bd55485aa3da8c37f54a'

(cherry picked from commit e0c4386e7e71d93b0edc0c8fa156263fc4a8b0b6)

show more ...


Revision tags: release/14.0.0
# bbecb0ff 09-Oct-2023 Pierre Pronchery <[email protected]>

OpenSSL: update to 3.0.11

OpenSSL 3.0.11 addresses:

POLY1305 MAC implementation corrupts XMM registers on Windows (CVE-2023-4807)

Relnotes: Yes
Pull request: https://github.com/freebsd/freebsd

OpenSSL: update to 3.0.11

OpenSSL 3.0.11 addresses:

POLY1305 MAC implementation corrupts XMM registers on Windows (CVE-2023-4807)

Relnotes: Yes
Pull request: https://github.com/freebsd/freebsd-src/pull/852
Sponsored by: The FreeBSD Foundation

(cherry picked from commit 6f1af0d7d2af54b339b5212434cd6d4fda628d80)

show more ...