forked from rpms/openssl
- fix CAN-2005-0109 - use constant time/memory access mod_exp so bits of
private key aren't leaked by cache eviction (#157631) - a few more fixes from upstream 0.9.7g
This commit is contained in:
parent
4e6a921995
commit
784dc22c4c
16
openssl.spec
16
openssl.spec
@ -22,7 +22,7 @@
|
|||||||
Summary: The OpenSSL toolkit.
|
Summary: The OpenSSL toolkit.
|
||||||
Name: openssl
|
Name: openssl
|
||||||
Version: 0.9.7f
|
Version: 0.9.7f
|
||||||
Release: 6
|
Release: 7
|
||||||
Source: openssl-%{version}-usa.tar.bz2
|
Source: openssl-%{version}-usa.tar.bz2
|
||||||
Source1: hobble-openssl
|
Source1: hobble-openssl
|
||||||
Source2: Makefile.certificate
|
Source2: Makefile.certificate
|
||||||
@ -50,6 +50,10 @@ Patch42: openssl-0.9.7e-krb5.patch
|
|||||||
Patch43: openssl-0.9.7f-bn-asm-uninitialized.patch
|
Patch43: openssl-0.9.7f-bn-asm-uninitialized.patch
|
||||||
Patch44: openssl-0.9.7f-ca-dir.patch
|
Patch44: openssl-0.9.7f-ca-dir.patch
|
||||||
Patch45: openssl-0.9.7f-use-poll.patch
|
Patch45: openssl-0.9.7f-use-poll.patch
|
||||||
|
Patch46: openssl-0.9.7f-backport-097g.patch
|
||||||
|
Patch47: openssl-0.9.7f-can-2005-0109.patch
|
||||||
|
|
||||||
|
|
||||||
License: BSDish
|
License: BSDish
|
||||||
Group: System Environment/Libraries
|
Group: System Environment/Libraries
|
||||||
URL: http://www.openssl.org/
|
URL: http://www.openssl.org/
|
||||||
@ -123,13 +127,14 @@ popd
|
|||||||
# Fix link line for libssl (bug #111154).
|
# Fix link line for libssl (bug #111154).
|
||||||
%patch42 -p1 -b .krb5
|
%patch42 -p1 -b .krb5
|
||||||
|
|
||||||
# Security fixes
|
|
||||||
|
|
||||||
# Additional fixes
|
# Additional fixes
|
||||||
%patch43 -p1 -b .uninitialized
|
%patch43 -p1 -b .uninitialized
|
||||||
#patch44 is applied after make test
|
#patch44 is applied after make test
|
||||||
%patch45 -p1 -b .use-poll
|
%patch45 -p1 -b .use-poll
|
||||||
|
|
||||||
|
%patch46 -p1 -b .backport-097g
|
||||||
|
# CAN-2005-0109
|
||||||
|
%patch47 -p1 -b .modexp-consttime
|
||||||
|
|
||||||
# Modify the various perl scripts to reference perl in the right location.
|
# Modify the various perl scripts to reference perl in the right location.
|
||||||
perl util/perlpath.pl `dirname %{__perl}`
|
perl util/perlpath.pl `dirname %{__perl}`
|
||||||
@ -391,6 +396,11 @@ popd
|
|||||||
%postun -p /sbin/ldconfig
|
%postun -p /sbin/ldconfig
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Thu May 19 2005 Tomas Mraz <tmraz@redhat.com> 0.9.7f-7
|
||||||
|
- fix CAN-2005-0109 - use constant time/memory access mod_exp
|
||||||
|
so bits of private key aren't leaked by cache eviction (#157631)
|
||||||
|
- a few more fixes from upstream 0.9.7g
|
||||||
|
|
||||||
* Wed Apr 27 2005 Tomas Mraz <tmraz@redhat.com> 0.9.7f-6
|
* Wed Apr 27 2005 Tomas Mraz <tmraz@redhat.com> 0.9.7f-6
|
||||||
- use poll instead of select in rand (#128285)
|
- use poll instead of select in rand (#128285)
|
||||||
- fix Makefile.certificate to point to /etc/pki/tls
|
- fix Makefile.certificate to point to /etc/pki/tls
|
||||||
|
Loading…
Reference in New Issue
Block a user