Hello community, here is the log from the commit of package openssl for openSUSE:Factory checked in at 2012-02-03 10:24:53 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/openssl (Old) and /work/SRC/openSUSE:Factory/.openssl.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Package is "openssl", Maintainer is "GJHe@suse.com" Changes: -------- --- /work/SRC/openSUSE:Factory/openssl/openssl.changes 2011-10-19 13:42:11.000000000 +0200 +++ /work/SRC/openSUSE:Factory/.openssl.new/openssl.changes 2012-02-03 10:25:02.000000000 +0100 @@ -1,0 +2,16 @@ +Thu Feb 2 06:55:12 UTC 2012 - gjhe@suse.com + +- Update to version 1.0.0g fix the following: + DTLS DoS attack (CVE-2012-0050) + +------------------------------------------------------------------- +Wed Jan 11 05:35:18 UTC 2012 - gjhe@suse.com + +- Update to version 1.0.0f fix the following: + DTLS Plaintext Recovery Attack (CVE-2011-4108) + Uninitialized SSL 3.0 Padding (CVE-2011-4576) + Malformed RFC 3779 Data Can Cause Assertion Failures (CVE-2011-4577) + SGC Restart DoS Attack (CVE-2011-4619) + Invalid GOST parameters DoS Attack (CVE-2012-0027) + +------------------------------------------------------------------- Old: ---- openssl-1.0.0e.tar.bz2 New: ---- openssl-1.0.0g.tar.bz2 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ openssl.spec ++++++ --- /var/tmp/diff_new_pack.Ij5yxf/_old 2012-02-03 10:25:03.000000000 +0100 +++ /var/tmp/diff_new_pack.Ij5yxf/_new 2012-02-03 10:25:03.000000000 +0100 @@ -1,7 +1,7 @@ # # spec file for package openssl # -# Copyright (c) 2011 SUSE LINUX Products GmbH, Nuernberg, Germany. +# Copyright (c) 2012 SUSE LINUX Products GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -30,9 +30,7 @@ %ifarch ppc64 Obsoletes: openssl-64bit %endif -# -#Version: 1.0.0 -Version: 1.0.0e +Version: 1.0.0g Release: 1 Summary: Secure Sockets and Transport Layer Security Url: http://www.openssl.org/ -- To unsubscribe, e-mail: opensuse-commit+unsubscribe@opensuse.org For additional commands, e-mail: opensuse-commit+help@opensuse.org