]> CyberLeo.Net >> Repos - FreeBSD/releng/8.0.git/commit
Disable SSL renegotiation in order to protect against a serious
authorcperciva <cperciva@ccf9f872-aa2e-dd11-9fc8-001c23d0bc1f>
Thu, 3 Dec 2009 09:18:40 +0000 (09:18 +0000)
committercperciva <cperciva@ccf9f872-aa2e-dd11-9fc8-001c23d0bc1f>
Thu, 3 Dec 2009 09:18:40 +0000 (09:18 +0000)
commit922978340ee076f7b40038a64488e92907d9f5d7
tree238adf9a44d550cd98ecea43ff9095ce5855c1ce
parent4eb0cf784f13d7a44aeff5dd00eb3a12d666f1e6
Disable SSL renegotiation in order to protect against a serious
protocol flaw. [09:15]

Correctly handle failures from unsetenv resulting from a corrupt
environment in rtld-elf. [09:16]

Fix permissions in freebsd-update in order to prevent leakage of
sensitive files. [09:17]

Approved by: so (cperciva)
Security: FreeBSD-SA-09:15.ssl
Security: FreeBSD-SA-09:16.rtld
Security: FreeBSD-SA-09:17.freebsd-udpate

git-svn-id: svn://svn.freebsd.org/base/releng/8.0@200054 ccf9f872-aa2e-dd11-9fc8-001c23d0bc1f
UPDATING
crypto/openssl/ssl/s3_lib.c
crypto/openssl/ssl/s3_pkt.c
crypto/openssl/ssl/s3_srvr.c
etc/mtree/BSD.var.dist
libexec/rtld-elf/rtld.c
usr.sbin/freebsd-update/freebsd-update.sh