From fda534e3fc63ce2b25fc1e2c99284df19f88f11b Mon Sep 17 00:00:00 2001 From: grant Date: Mon, 31 May 2004 10:35:44 +0000 Subject: Pull up revision 1.21 (requested by taca in ticket #33): updated mod_ssl to 2.8.18. *) Fix buffer overflow in "SSLOptions +FakeBasicAuth" implementation if the Subject-DN in the client certificate exceeds 6KB in length. (CVE CAN-2004-0488). --- www/ap-ssl/distinfo | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/www/ap-ssl/distinfo b/www/ap-ssl/distinfo index b865513be8b..f395bb57b18 100644 --- a/www/ap-ssl/distinfo +++ b/www/ap-ssl/distinfo @@ -1,7 +1,7 @@ -$NetBSD: distinfo,v 1.19.4.1 2004/05/26 10:59:33 grant Exp $ +$NetBSD: distinfo,v 1.19.4.2 2004/05/31 10:35:44 grant Exp $ -SHA1 (mod_ssl-2.8.17-1.3.31.tar.gz) = 942ca41a95f1e671ecabf90a8704b85de42d5d42 -Size (mod_ssl-2.8.17-1.3.31.tar.gz) = 754472 bytes +SHA1 (mod_ssl-2.8.18-1.3.31.tar.gz) = d40151ce3647d2054cfa7edb0e668fa4d3355cee +Size (mod_ssl-2.8.18-1.3.31.tar.gz) = 754214 bytes SHA1 (patch-aa) = 6b66b8d9e8bd03613376dca3b4e0dad3a2e7ed15 SHA1 (patch-ab) = 936bc956761559c51263cf7645d135abe40069cd SHA1 (patch-ac) = ebdd43a3ce98fbd20ea515e06eb7f41d440cd294 -- cgit v1.2.3