]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/commit
openssl: update to 1.1.1g
authorArne Fitzenreiter <arne_f@ipfire.org>
Tue, 21 Apr 2020 13:43:38 +0000 (15:43 +0200)
committerArne Fitzenreiter <arne_f@ipfire.org>
Tue, 21 Apr 2020 13:47:43 +0000 (13:47 +0000)
commit9ec0fca91d237fffe686b2a23fa5cd1dac731fd3
tree31c17de44a527cc2defa3ff1c83e488b5f52b6e2
parent88ba9a24801338f5421cace9ae99db31be1f0889
openssl: update to 1.1.1g

CVE-2020-1967 (OpenSSL advisory) [High severity] 21 April 2020:
    Server or client applications that call the SSL_check_chain()
    function during or after a TLS 1.3 handshake may crash due
    to a NULL pointer dereference as a result of incorrect handling
    of the "signature_algorithms_cert" TLS extension.
    The crash occurs if an invalid or unrecognised signature algorithm
    is received from the peer. This could be exploited by a malicious
    peer in a Denial of Service attack.
https://www.openssl.org/news/secadv/20200421.txt

Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org>
lfs/openssl