]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
openssl: CVE-2022-3358 Using a Custom Cipher with NID_undef may lead to NULL encryption
authorHitendra Prajapati <hprajapati@mvista.com>
Fri, 4 Nov 2022 03:00:38 +0000 (17:00 -1000)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Fri, 4 Nov 2022 13:13:27 +0000 (13:13 +0000)
commit098e89e89eb58f7d0a6004d4672f3d7365c329dc
treecd2dc425de828604594c6edcf90e206df468e90f
parent850ccc2a303f940f3a13ea6b2581081162f014e4
openssl: CVE-2022-3358 Using a Custom Cipher with NID_undef may lead to NULL encryption

Upstream-Status: Backport from https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=5485c56679d7c49b96e8fc8ca708b0b7e7c03c4b]
Description:
CVE-2022-3358 openssl: Using a Custom Cipher with NID_undef may lead to NULL encryption.
Affects "openssl < 3.0.6"

Signed-off-by: Hitendra Prajapati <hprajapati@mvista.com>
Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com>
(cherry picked from commit f98b2273c6f03f8f6029a7a409600ce290817e27)
Signed-off-by: Steve Sakoman <steve@sakoman.com>
(cherry picked from commit 08b32d2b35c2ba63774d098af467d1c723b1b6e6)
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-connectivity/openssl/openssl/CVE-2022-3358.patch [new file with mode: 0644]
meta/recipes-connectivity/openssl/openssl_3.0.5.bb