diff options
author | Bodo Möller <bodo@openssl.org> | 2008-05-28 22:15:48 +0000 |
---|---|---|
committer | Bodo Möller <bodo@openssl.org> | 2008-05-28 22:15:48 +0000 |
commit | 40a706286febe0279336c96374c607daaa1b1d49 (patch) | |
tree | d3659cec7604ce0597aef00a763f62387f9de60b /CHANGES | |
parent | c6f6c380c75859ad52b59220b375d817cefb0d18 (diff) | |
download | openssl-40a706286febe0279336c96374c607daaa1b1d49.tar.gz |
From HEAD:
Fix double-free in TLS server name extensions which could lead to a remote
crash found by Codenomicon TLS test suite (CVE-2008-0891)
Reviewed by: openssl-security@openssl.org
Obtained from: jorton@redhat.com
Diffstat (limited to 'CHANGES')
-rw-r--r-- | CHANGES | 4 |
1 files changed, 4 insertions, 0 deletions
@@ -690,6 +690,10 @@ Changes between 0.9.8g and 0.9.8h [xx XXX xxxx] + *) Fix double free in TLS server name extensions which could lead to + a remote crash found by Codenomicon TLS test suite (CVE-2008-0891) + [Joe Orton] + *) Clear error queue in SSL_CTX_use_certificate_chain_file() Clear the error queue to ensure that error entries left from |