diff options
author | Ted Unangst <tedu@cvs.openbsd.org> | 2015-03-19 14:00:23 +0000 |
---|---|---|
committer | Ted Unangst <tedu@cvs.openbsd.org> | 2015-03-19 14:00:23 +0000 |
commit | 836b495106f594955b58752d134d1fdfdc8973b1 (patch) | |
tree | 7822387262a7d3bef9e0cd5e3fe209b4f0b5c5c6 /lib/libcrypto/ec/ec_lcl.h | |
parent | 5ee002f51cf23a40109eb29a0600077fe8edc54b (diff) |
Fix several crash causing defects from OpenSSL.
These include:
CVE-2015-0209 - Use After Free following d2i_ECPrivatekey error
CVE-2015-0286 - Segmentation fault in ASN1_TYPE_cmp
CVE-2015-0287 - ASN.1 structure reuse memory corruption
CVE-2015-0289 - PKCS7 NULL pointer dereferences
Several other issues did not apply or were already fixed.
Refer to https://www.openssl.org/news/secadv_20150319.txt
joint work with beck, doug, guenther, jsing, miod
Diffstat (limited to 'lib/libcrypto/ec/ec_lcl.h')
0 files changed, 0 insertions, 0 deletions