diff options
author | wiz <wiz@pkgsrc.org> | 2006-09-16 06:21:22 +0000 |
---|---|---|
committer | wiz <wiz@pkgsrc.org> | 2006-09-16 06:21:22 +0000 |
commit | 770746f32beec0ea3899f18036b590798a1da3b9 (patch) | |
tree | a9ab1e4e9b57bdc6566397571bb6d958df475ca4 /archivers/xbin | |
parent | 21201708ed8f8d81790f7fa7b7a3b46a186ba11d (diff) | |
download | pkgsrc-770746f32beec0ea3899f18036b590798a1da3b9.tar.gz |
Update to 1.4.4:
* Version 1.4.4 (released 2006-09-12)
** Relax the test that caught signatures that exploit the variant of
** Bleichenbacher's Crypto 06 rump session attack on our
** verification logic flaw.
In particular, we now permit the digestAlgorithm.parameters field to
be present but empty, whereas in 1.4.3 we actually checked that the
field was absent.
** Revert the removal of debug information for the GNUTLS-SA-2006-3 problem.
The messages are only printed in debug mode, which is not recommended
for normal use, and thus logging this situation cannot be abused as an
oracle in typical recommended situations.
** API and ABI modifications:
No changes since last version.
Diffstat (limited to 'archivers/xbin')
0 files changed, 0 insertions, 0 deletions