poky/meta/recipes-connectivity
Paul Eggleton 8386f4203d openssl: fix CVE-2014-0221
http://www.openssl.org/news/secadv_20140605.txt

DTLS recursion flaw (CVE-2014-0221)

By sending an invalid DTLS handshake to an OpenSSL DTLS client the code
can be made to recurse eventually crashing in a DoS attack.

Only applications using OpenSSL as a DTLS client are affected.

(Patch borrowed from Fedora.)

(From OE-Core rev: 833920fadd58fe353d27f94f340e3a9f6923afb8)

Signed-off-by: Paul Eggleton <paul.eggleton@linux.intel.com>
Signed-off-by: Saul Wold <sgw@linux.intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
2014-06-10 17:12:20 +01:00
..
2014-03-05 17:36:37 +00:00
2014-03-05 17:36:37 +00:00
2014-03-25 09:55:35 +00:00
2014-03-11 20:28:57 -07:00
2014-01-06 22:17:32 +00:00
2014-05-29 13:43:28 +01:00
2014-06-10 17:12:20 +01:00
2014-03-05 17:36:37 +00:00
2014-03-05 15:50:21 +00:00
2014-02-14 12:31:10 +00:00