]>
git.pld-linux.org Git - packages/openssl.git/log
misi3k [Mon, 17 Mar 2003 19:01:36 +0000 (19:01 +0000)]
- rel 1
Changed files:
openssl.spec -> 1.95
misi3k [Mon, 17 Mar 2003 18:44:20 +0000 (18:44 +0000)]
- secuirty patch
Bug (bugtraq):
Researchers have discovered a timing attack on RSA keys, to which
OpenSSL is generally vulnerable, unless RSA blinding has been turned
on.
Typically, it will not have been, because it is not easily possible to
do so when using OpenSSL to provide SSL or TLS.
The enclosed patch switches blinding on by default. Applications that
wish to can remove the blinding with RSA_blinding_off(), but this is
not generally advised. It is also possible to disable it completely by
defining OPENSSL_NO_FORCE_RSA_BLINDING at compile-time.
The performance impact of blinding appears to be small (a few
percent).
This problem affects many applications using OpenSSL, in particular,
almost all SSL-enabled Apaches. You should rebuild and reinstall
OpenSSL, and all affected applications.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2003-0147 to this issue.
We strongly advise upgrading OpenSSL in all cases, as a precaution.
Changed files:
openssl-sec3.patch -> 1.1
misi3k [Mon, 17 Mar 2003 18:43:02 +0000 (18:43 +0000)]
- secuirty patch (patch4)
Bug (bugtraq):
Researchers have discovered a timing attack on RSA keys, to which
OpenSSL is generally vulnerable, unless RSA blinding has been turned
on.
Typically, it will not have been, because it is not easily possible to
do so when using OpenSSL to provide SSL or TLS.
The enclosed patch switches blinding on by default. Applications that
wish to can remove the blinding with RSA_blinding_off(), but this is
not generally advised. It is also possible to disable it completely by
defining OPENSSL_NO_FORCE_RSA_BLINDING at compile-time.
The performance impact of blinding appears to be small (a few
percent).
This problem affects many applications using OpenSSL, in particular,
almost all SSL-enabled Apaches. You should rebuild and reinstall
OpenSSL, and all affected applications.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2003-0147 to this issue.
We strongly advise upgrading OpenSSL in all cases, as a precaution.
Changed files:
openssl.spec -> 1.94
trojan [Mon, 3 Mar 2003 08:52:07 +0000 (08:52 +0000)]
- s/#%{/#%%{/
Changed files:
openssl.spec -> 1.93
radek [Sun, 2 Mar 2003 21:36:53 +0000 (21:36 +0000)]
- use the __perl macro
Changed files:
openssl.spec -> 1.92
Jakub Bogusz [Thu, 20 Feb 2003 09:39:47 +0000 (09:39 +0000)]
- one more update - don't disable shared library on mips/mipsel
Changed files:
openssl-optflags.patch -> 1.7
misi3k [Wed, 19 Feb 2003 20:53:56 +0000 (20:53 +0000)]
- updated to work with 0.9.7a
Changed files:
openssl-optflags.patch -> 1.6
misi3k [Wed, 19 Feb 2003 20:51:11 +0000 (20:51 +0000)]
- updated to 0.9.7a
Changed files:
openssl.spec -> 1.91
juandon [Sun, 16 Feb 2003 20:14:57 +0000 (20:14 +0000)]
- added parallel_make patch
Changed files:
openssl.spec -> 1.90
juandon [Sun, 16 Feb 2003 20:14:08 +0000 (20:14 +0000)]
- parallel build is now possible
Changed files:
openssl-parallel_make.patch -> 1.1
Mariusz Mazur [Thu, 30 Jan 2003 23:30:24 +0000 (23:30 +0000)]
- added URL
Changed files:
openssl.spec -> 1.89
Tomek Orzechowski [Sun, 5 Jan 2003 23:49:49 +0000 (23:49 +0000)]
- upgrade seems finished
- release 0.9 - testing needed
Changed files:
openssl.spec -> 1.88
Tomek Orzechowski [Sun, 5 Jan 2003 21:30:14 +0000 (21:30 +0000)]
- up to 0.9.7
Changed files:
openssl.spec -> 1.87
Tomek Orzechowski [Sun, 5 Jan 2003 21:28:47 +0000 (21:28 +0000)]
- fixes for 0.9.7
Changed files:
openssl-alpha-ccc.patch -> 1.4
openssl-optflags.patch -> 1.5
Tomasz Pala [Tue, 31 Dec 2002 11:16:21 +0000 (11:16 +0000)]
- cut off Vendor, cosmetics
Changed files:
openssl.spec -> 1.86
Tomek Orzechowski [Tue, 24 Dec 2002 09:30:13 +0000 (09:30 +0000)]
- partial update, doesnt build (./Configure is perl script, it sucks)
Changed files:
openssl.spec -> 1.85
Tomek Orzechowski [Tue, 24 Dec 2002 08:49:18 +0000 (08:49 +0000)]
- updated
Changed files:
openssl-alpha-ccc.patch -> 1.3
openssl-optflags.patch -> 1.4
Tomek Orzechowski [Tue, 24 Dec 2002 08:47:50 +0000 (08:47 +0000)]
- outdated
Changed files:
openssl-nocrypt.patch -> 1.4
openssl-soname.patch -> 1.5
Tomek Orzechowski [Sat, 21 Dec 2002 23:10:02 +0000 (23:10 +0000)]
- up to 0.9.6h
Changed files:
openssl.spec -> 1.84
ankry [Mon, 2 Dec 2002 11:06:23 +0000 (11:06 +0000)]
- massive cleaning
Changed files:
openssl.spec -> 1.83
ankry [Thu, 24 Oct 2002 09:57:21 +0000 (09:57 +0000)]
- added pl openssl.1 man page, rel. 2
Changed files:
openssl.spec -> 1.82
ankry [Wed, 23 Oct 2002 20:10:25 +0000 (20:10 +0000)]
- typo
Changed files:
openssl.1.pl -> 1.2
ankry [Wed, 23 Oct 2002 20:08:17 +0000 (20:08 +0000)]
1beac1568dd97c9fbb81bbb3eaa27e0e openssl.1.pl
Changed files:
openssl.1.pl -> 1.1
Jakub Bogusz [Wed, 2 Oct 2002 11:12:00 +0000 (11:12 +0000)]
- merged DEVEL branch (updated for 0.9.6g)
Changed files:
openssl-nocrypt.patch -> 1.3
openssl-optflags.patch -> 1.3
Jakub Bogusz [Wed, 2 Oct 2002 11:05:11 +0000 (11:05 +0000)]
- merged DEVEL branch (update to 0.9.6g)
Changed files:
openssl.spec -> 1.81
Mariusz Mazur [Tue, 17 Sep 2002 20:58:33 +0000 (20:58 +0000)]
- fix another buffer overflow... rel4; STBR
- details should be in SA
Changed files:
openssl.spec -> 1.80
Mariusz Mazur [Tue, 17 Sep 2002 20:56:53 +0000 (20:56 +0000)]
- fix an overflow iplemented in a fix for an overflow :) ASN1
Changed files:
openssl-0.9.6c-security.patch -> 1.4
Jakub Bogusz [Mon, 12 Aug 2002 10:35:08 +0000 (10:35 +0000)]
- one more fix from 0.9.6f
Changed files:
openssl-0.9.6c-security.patch -> 1.3
Jakub Bogusz [Wed, 31 Jul 2002 09:23:49 +0000 (09:23 +0000)]
- added missing ASN.1 fixes to security patch; release 3
Changed files:
openssl.spec -> 1.79
Jakub Bogusz [Wed, 31 Jul 2002 09:22:46 +0000 (09:22 +0000)]
- missing fixes for ASN.1
Changed files:
openssl-0.9.6c-security.patch -> 1.2
Jakub Bogusz [Tue, 30 Jul 2002 13:54:50 +0000 (13:54 +0000)]
- added security fixes from Bugtraq (patch prepared by Vincent Danen)
- release 2
Changed files:
openssl.spec -> 1.78
Jakub Bogusz [Tue, 30 Jul 2002 13:48:36 +0000 (13:48 +0000)]
- security fix for old openssl version
Changed files:
openssl-0.9.6c-security.patch -> 1.1
kloczek [Sun, 5 May 2002 12:19:56 +0000 (12:19 +0000)]
- merge DEVEL bramnch to HEAD (updated to 0.9.6c),
- merge translations from KSI and Conectiva.
Changed files:
openssl.spec -> 1.77
kloczek [Sun, 5 May 2002 12:18:56 +0000 (12:18 +0000)]
- "cvs up -j DEVEL" .. merge DEVEL branch to HEAD.
Changed files:
openssl-optflags.patch -> 1.2
Artur Frysiak [Fri, 19 Apr 2002 09:40:12 +0000 (09:40 +0000)]
one more fix in nocrypt.patch (openssl/des.h must not define prototype of crypt()), release 9
Changed files:
openssl.spec -> 1.76
Artur Frysiak [Fri, 19 Apr 2002 09:35:43 +0000 (09:35 +0000)]
don't provide crypt() prototype in openssl/des.h
Changed files:
openssl-nocrypt.patch -> 1.2
kloczek [Sun, 17 Mar 2002 11:34:53 +0000 (11:34 +0000)]
- fix: move ca-bundle.crt to main package.
Changed files:
openssl.spec -> 1.75
kloczek [Sun, 17 Mar 2002 09:33:06 +0000 (09:33 +0000)]
- use /usr/share/ssl/ca-bundle.crt in default configuration
(patch by Wojtek Ślusarczyk).
Changed files:
openssl-globalCA.diff -> 1.1
kloczek [Sun, 17 Mar 2002 09:23:54 +0000 (09:23 +0000)]
- release 8,
- added to bundle CA Root Certificates Unizeto certificates,
- use CC=%%{__cc} on compile.
Changed files:
openssl.spec -> 1.74
kloczek [Sun, 17 Mar 2002 09:21:54 +0000 (09:21 +0000)]
Bundle of Certum CA Root Certificates with Unizeto certificates
(sended by Wojtek Ślusarczyk).
Changed files:
openssl-ca-bundle.crt -> 1.1
kloczek [Wed, 6 Mar 2002 16:45:47 +0000 (16:45 +0000)]
- removed all embeded stuff.
Changed files:
openssl.spec -> 1.73
Jakub Bogusz [Wed, 6 Mar 2002 10:25:09 +0000 (10:25 +0000)]
- fixed removing uclibc stuff
Changed files:
openssl.spec -> 1.72
marcus [Tue, 5 Mar 2002 17:30:52 +0000 (17:30 +0000)]
- removed uclibc stuff
- rel.7.
Changed files:
openssl.spec -> 1.71
kloczek [Sat, 23 Feb 2002 04:17:25 +0000 (04:17 +0000)]
- adapterized.
Changed files:
openssl.spec -> 1.70
kloczek [Fri, 22 Feb 2002 23:29:21 +0000 (23:29 +0000)]
- removed all Group fields translations (oure rpm now can handle translating
Group field using gettext).
Changed files:
openssl.spec -> 1.69
Tomasz Pala [Tue, 19 Feb 2002 18:53:35 +0000 (18:53 +0000)]
- %desc
Changed files:
openssl.spec -> 1.68
ankry [Sat, 2 Feb 2002 20:32:09 +0000 (20:32 +0000)]
- adding es/fr/pt_BR/ru/uk (and eventually de) Group translations
Changed files:
openssl.spec -> 1.67
ankry [Thu, 31 Jan 2002 23:56:53 +0000 (23:56 +0000)]
- removed bogus Group(fr)
Changed files:
openssl.spec -> 1.66
filon [Sat, 26 Jan 2002 13:18:58 +0000 (13:18 +0000)]
- athlon updates
- relase 2
Changed files:
openssl.spec -> 1.65
Michal Moskal [Wed, 23 Jan 2002 16:28:59 +0000 (16:28 +0000)]
- added devel-embed subpackage
- rel 6
Changed files:
openssl.spec -> 1.64
kloczek [Fri, 18 Jan 2002 02:14:07 +0000 (02:14 +0000)]
perl -pi -e "s/pld-list\@pld.org.pl/feedback\@pld.org.pl/"
Changed files:
openssl.spec -> 1.63
kloczek [Thu, 3 Jan 2002 06:33:47 +0000 (06:33 +0000)]
- release 5: libopenssl0{,-devel} added to Obsoletes for allow upgrade from MDK.
Changed files:
openssl.spec -> 1.62
Artur Frysiak [Tue, 20 Nov 2001 17:13:17 +0000 (17:13 +0000)]
remove crypt(3) from libcrypto
Changed files:
openssl-nocrypt.patch -> 1.1
Artur Frysiak [Tue, 20 Nov 2001 17:12:05 +0000 (17:12 +0000)]
remove crypt(3) from libcrypto;release 4
Changed files:
openssl.spec -> 1.61
kloczek [Sun, 15 Jul 2001 11:46:45 +0000 (11:46 +0000)]
- release 3: basck to SONAME 0.9.6.1.
Changed files:
openssl.spec -> 1.60
kloczek [Sun, 15 Jul 2001 11:46:24 +0000 (11:46 +0000)]
- back to SOANME 0.9.6.1.
Changed files:
openssl-soname.patch -> 1.4
kloczek [Thu, 12 Jul 2001 21:15:25 +0000 (21:15 +0000)]
- release 2: bump SONAME to 0.9.6.2.
Changed files:
openssl.spec -> 1.59
kloczek [Thu, 12 Jul 2001 21:14:55 +0000 (21:14 +0000)]
- bump SONAME to 0.9.6.2.
Changed files:
openssl-soname.patch -> 1.3
Jakub Bogusz [Wed, 11 Jul 2001 23:25:24 +0000 (23:25 +0000)]
- 0.9.6b - security and bug fixes release
Changed files:
openssl.spec -> 1.58
Arkadiusz Miśkiewicz [Thu, 24 May 2001 18:02:00 +0000 (18:02 +0000)]
release 4
Changed files:
openssl.spec -> 1.57
serek [Thu, 24 May 2001 17:05:24 +0000 (17:05 +0000)]
- link correction.
Changed files:
openssl.spec -> 1.56
kloczek [Tue, 8 May 2001 20:10:36 +0000 (20:10 +0000)]
- release 3,
- added optflags patch (based on redhat patch from rawhide),
- simplifications in %build and %install.
Changed files:
openssl.spec -> 1.55
kloczek [Tue, 8 May 2001 20:00:47 +0000 (20:00 +0000)]
- based on redhat patch from rawhide.
Changed files:
openssl-optflags.patch -> 1.1
Artur Frysiak [Mon, 7 May 2001 15:31:10 +0000 (15:31 +0000)]
fixed
Changed files:
openssl-soname.patch -> 1.2
Artur Frysiak [Mon, 7 May 2001 14:56:43 +0000 (14:56 +0000)]
use patch1
Changed files:
openssl.spec -> 1.54
Artur Frysiak [Mon, 7 May 2001 14:27:06 +0000 (14:27 +0000)]
change soname to lib*.so.0.9.6.1 (workaround ABI break)
Changed files:
openssl-soname.patch -> 1.1
Artur Frysiak [Mon, 7 May 2001 14:22:15 +0000 (14:22 +0000)]
add soname patch (fix ABI brakage)
Changed files:
openssl.spec -> 1.53
Artur Frysiak [Fri, 4 May 2001 15:22:56 +0000 (15:22 +0000)]
0.9.6a
Changed files:
openssl.spec -> 1.52
Artur Frysiak [Fri, 4 May 2001 15:18:48 +0000 (15:18 +0000)]
updated to 0.9.6a
Changed files:
openssl-alpha-ccc.patch -> 1.2
Arkadiusz Miśkiewicz [Tue, 1 May 2001 23:31:21 +0000 (23:31 +0000)]
obsolete; perl paths fixed at spec level
Changed files:
openssl-perl.patch -> 1.6
Arkadiusz Miśkiewicz [Tue, 1 May 2001 23:30:51 +0000 (23:30 +0000)]
- fix _all_ perl paths
- package need update to 0.9.6a (since few important bug were fixed)
Changed files:
openssl.spec -> 1.51
kloczek [Mon, 30 Apr 2001 16:05:25 +0000 (16:05 +0000)]
- added using %%{rpmcflags} macro.
Changed files:
openssl.spec -> 1.50
Jan Rękorajski [Tue, 17 Apr 2001 12:04:54 +0000 (12:04 +0000)]
- release 6
- rebuild with perl 5.6.1
Changed files:
openssl.spec -> 1.49
Arkadiusz Miśkiewicz [Thu, 25 Jan 2001 20:03:42 +0000 (20:03 +0000)]
Massive attack. We use -O0 instead -O flags while debug enabled.
Changed files:
openssl.spec -> 1.48
Jan Rękorajski [Thu, 28 Dec 2000 15:06:51 +0000 (15:06 +0000)]
- release 5
- moved c_rehash to perl package (it's a perl script)
- fixed lib*.so install
Changed files:
openssl.spec -> 1.47
michuz [Sat, 23 Dec 2000 00:48:46 +0000 (00:48 +0000)]
- changed %%{!?debug:...}%%{?debug...} to %%{?debug:...}%%{!?debug...}
(now it's more C like)
Changed files:
openssl.spec -> 1.46
dobrek [Wed, 29 Nov 2000 16:20:08 +0000 (16:20 +0000)]
-removed compilation using compaq compiler.
Changed files:
openssl.spec -> 1.45
kloczek [Tue, 21 Nov 2000 00:02:22 +0000 (00:02 +0000)]
- replace all "-mcpu=ultrasparc" by %%{optflags} for generate correct
binaries on sparc32/sparc64.
Changed files:
openssl.spec -> 1.44
kloczek [Mon, 20 Nov 2000 23:58:23 +0000 (23:58 +0000)]
- release 4: added touch Makefile.* for correcting tme from future on this
files.
Changed files:
openssl.spec -> 1.43
dobrek [Wed, 18 Oct 2000 15:31:17 +0000 (15:31 +0000)]
- Support for shared librares on AXP using the compaq compiler.
Changed files:
openssl-alpha-ccc.patch -> 1.1
dobrek [Wed, 18 Oct 2000 15:28:07 +0000 (15:28 +0000)]
- Added suport for ccc compiler on AXP + corrected problems with shared librares
- One patch added
- Release=3
Changed files:
openssl.spec -> 1.42
dobrek [Mon, 16 Oct 2000 20:09:48 +0000 (20:09 +0000)]
- Correcte architecture name for AXP. into linux-alpha-gcc
Changed files:
openssl.spec -> 1.41
kloczek [Thu, 12 Oct 2000 13:14:59 +0000 (13:14 +0000)]
- adaptrerized and removed stripping from %install,
- changed Group to Applications/Communications in tools, tools-perl.
Changed files:
openssl.spec -> 1.40
Artur Frysiak [Thu, 12 Oct 2000 12:26:52 +0000 (12:26 +0000)]
fix install
Changed files:
openssl.spec -> 1.39
Artur Frysiak [Tue, 10 Oct 2000 12:02:52 +0000 (12:02 +0000)]
- Release: 2
- fix building for i{3,4}86
Changed files:
openssl.spec -> 1.38
kravietz [Sat, 30 Sep 2000 07:43:10 +0000 (07:43 +0000)]
- upgraded to OpenSSL-0.9.6
Changed files:
openssl.spec -> 1.37
kloczek [Mon, 28 Aug 2000 23:21:19 +0000 (23:21 +0000)]
- s/\.gz/\*/ in %files for mana pages,
- group compress man pages in one line in %install,
- diew other cosmetics.
Changed files:
openssl.spec -> 1.36
mis [Thu, 24 Aug 2000 15:52:02 +0000 (15:52 +0000)]
- splited openssl again (following Wiget suggestions) to:
openssl (libraries),
openssl-tools (openssl cmdline tool and scripts)
openssl-tools-perl (Perl scripts)
- removed rehashing certs from %post, I think it may confuse some
running apps during openssl-tools upgrade (I'm not sure); and
seems nobody needs it -- "c_rehash certs" does nothing)
- man pages are installed instead of PODs (this should be a patch for
Makefile, instead of %build part, TODO)
- adpterized and some cosmetics
Changed files:
openssl.spec -> 1.35
mis [Tue, 22 Aug 2000 16:38:11 +0000 (16:38 +0000)]
- openssl package splited to openssl (with scripts and binaries) and
openssl-libs (with shared libraries only).
That's for the ones who use programs which not need whole openssl
(like ssh, which use libcrypto only).
I'm not sure that "openssl-libs" name is a good choice, fix me if not.
Changed files:
openssl.spec -> 1.34
kloczek [Fri, 9 Jun 2000 07:23:27 +0000 (07:23 +0000)]
- added using %%{__make} macro.
Changed files:
openssl.spec -> 1.33
kloczek [Fri, 26 May 2000 00:11:46 +0000 (00:11 +0000)]
- release 3,
- added %dir %%{_sysconfdir} to %files.
Changed files:
openssl.spec -> 1.32
kloczek [Wed, 24 May 2000 18:14:06 +0000 (18:14 +0000)]
- release 2.
Changed files:
openssl.spec -> 1.31
Sebastian Zagrodzki [Wed, 24 May 2000 18:01:14 +0000 (18:01 +0000)]
- prereq: sed, fileutils (c_rehash requires this)
Changed files:
openssl.spec -> 1.30
kloczek [Sun, 21 May 2000 00:14:05 +0000 (00:14 +0000)]
- spec adapterized.
Changed files:
openssl.spec -> 1.29
kloczek [Wed, 10 May 2000 17:58:25 +0000 (17:58 +0000)]
- fixed %install,
WARNING: current adapter.awk have bug (replaces all "rm -rf $RPM_BUILD_ROOT*"
by "rm -rf $RPM_BUILD_ROOT").
Changed files:
openssl.spec -> 1.28
kloczek [Wed, 10 May 2000 17:18:59 +0000 (17:18 +0000)]
- spec adapterized.
Changed files:
openssl.spec -> 1.27
Artur Frysiak [Wed, 10 May 2000 11:58:10 +0000 (11:58 +0000)]
0.9.5a
Changed files:
openssl.spec -> 1.26
Artur Frysiak [Wed, 10 May 2000 11:57:34 +0000 (11:57 +0000)]
- 0.9.5a
Changed files:
openssl-perl.patch -> 1.5
Jan Rękorajski [Tue, 25 Apr 2000 16:16:48 +0000 (16:16 +0000)]
- release++
- FHS 2.1, /var/state -> /var/lib
Changed files:
openssl.spec -> 1.25
Sebastian Zagrodzki [Sat, 1 Apr 2000 11:15:16 +0000 (11:15 +0000)]
- changed all BuildRoot definitons
- removed all applnkdir defs
- changed some prereqs/requires
- removed duplicate empty lines
Changed files:
openssl.spec -> 1.24
This page took 1.439179 seconds and 4 git commands to generate.