diff options
author | Yue Tao <Yue.Tao@windriver.com> | 2014-03-26 17:08:44 +0800 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2014-03-26 12:15:11 +0000 |
commit | 94352e694cd828aa84abd846149712535f48ab0f (patch) | |
tree | f9f09e86bef2092acbb433b6b7bd03c275fd3b75 /scripts | |
parent | 35ccce7002188c8270d2fead35f9763b22776877 (diff) | |
download | openembedded-core-94352e694cd828aa84abd846149712535f48ab0f.tar.gz openembedded-core-94352e694cd828aa84abd846149712535f48ab0f.tar.bz2 openembedded-core-94352e694cd828aa84abd846149712535f48ab0f.zip |
Security Advisory - openssl - CVE-2013-6450
The DTLS retransmission implementation in OpenSSL through 0.9.8y and 1.x
through 1.0.1e does not properly maintain data structures for digest and
encryption contexts, which might allow man-in-the-middle attackers to
trigger the use of a different context by interfering with packet delivery,
related to ssl/d1_both.c and ssl/t1_enc.c.
Signed-off-by: Yue Tao <Yue.Tao@windriver.com>
Signed-off-by: Jackie Huang <jackie.huang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'scripts')
0 files changed, 0 insertions, 0 deletions