You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
openwrt/package/libs
Kevin Darbyshire-Bryant 69ac637fbb mbedtls: update to 2.6.0 CVE-2017-14032
Fixed an authentication bypass issue in SSL/TLS. When the TLS
authentication mode was set to 'optional',
mbedtls_ssl_get_verify_result() would incorrectly return 0 when the
peer's X.509 certificate chain had more than
MBEDTLS_X509_MAX_INTERMEDIATE_CA intermediates (default: 8), even when
it was not trusted. This could be triggered remotely on both the client
and server side. (Note, with the authentication mode set by
mbedtls_ssl_conf_authmode()to be 'required' (the default), the handshake
was correctly aborted).

Signed-off-by: Kevin Darbyshire-Bryant <kevin@darbyshire-bryant.me.uk>
Tested-by: Magnus Kroken <mkroken@gmail.com>
7 years ago
..
argp-standalone treewide: clean up download hashes 8 years ago
cyassl cyassl: update to wolfssl version 3.10.0 7 years ago
elfutils elfutils: Pass -Wno-unused-result to silence warnings as errors 7 years ago
gettext package: replace $(STAGING_DIR)/host with $(STAGING_DIR_HOSTPKG) 7 years ago
gettext-full gettext-full: fix to use $STAGING_DIR_HOSTPKG instead of $STAGING_DIR/host 7 years ago
gmp gmp: Update to 6.1.2 8 years ago
libbsd treewide: clean up download hashes 8 years ago
libconfig treewide: clean up download hashes 8 years ago
libevent2 treewide: clean up download hashes 8 years ago
libiconv package: replace $(STAGING_DIR)/host with $(STAGING_DIR_HOSTPKG) 7 years ago
libiconv-full treewide: clean up download hashes 8 years ago
libjson-c json-c: disable implicit fallthrough warning (gcc 7) 7 years ago
libmnl treewide: clean up download hashes 8 years ago
libnetfilter-conntrack treewide: clean up download hashes 8 years ago
libnetfilter-cthelper treewide: clean up download hashes 8 years ago
libnetfilter-cttimeout treewide: clean up download hashes 8 years ago
libnetfilter-log treewide: clean up download hashes 8 years ago
libnetfilter-queue treewide: clean up and unify PKG_VERSION for git based downloads 8 years ago
libnfnetlink treewide: clean up download hashes 8 years ago
libnftnl libs/libnftnl: Update to 1.0.7 7 years ago
libnl libnl: Fix building with uClibc 7 years ago
libnl-tiny libnl-tiny: define _GNU_SOURCE if not defined 8 years ago
libpcap libs/libpcap: Rework URLs 7 years ago
libroxml treewide: clean up download hashes 8 years ago
librpc treewide: clean up and unify PKG_VERSION for git based downloads 8 years ago
libtool libtool: don't clobber host libtool infrastructure 7 years ago
libubox libubox: update to the latest version, fixes a runqueue use-after-free bug 7 years ago
libunwind libunwind: update to version 1.2.1 7 years ago
libusb libusb: Update to 1.0.21 8 years ago
libusb-compat treewide: clean up download hashes 8 years ago
lzo lzo: use default Build/Configure rule 7 years ago
mbedtls mbedtls: update to 2.6.0 CVE-2017-14032 7 years ago
ncurses ncurses: add libnucrses-dev package 7 years ago
nettle treewide: clean up download hashes 8 years ago
openssl openssl: update to version 1.0.2l 7 years ago
popt treewide: clean up download hashes 8 years ago
readline libreadline: add host-build 7 years ago
sysfsutils treewide: clean up download hashes 8 years ago
toolchain toolchain: Package libgomp 7 years ago
uclibc++ uclibc++: patch bugfix erase() on derived __base_associative 7 years ago
uclient uclient: update to 2017-09-06 7 years ago
ustream-ssl ustream-ssl: remove legacy polarssl support 7 years ago
zlib zlib: use default Build/Configure rule 7 years ago