HomeFreeBSD

OpenSSL: address CVE-2020-1971

Description

OpenSSL: address CVE-2020-1971

OpenSSL commit 3db2c9f3:
Complain if we are attempting to encode with an invalid ASN.1 template

OpenSSL commit 43a7033:
Check that multi-strings/CHOICE types don't use implicit tagging

OpenSSL commit f960d812:
Correctly compare EdiPartyName in GENERAL_NAME_cmp()

Obtained from: OpenSSL 3db2c9f3, 43a7033, f960d812
Security: CVE-2020-1971

Details

Provenance
emasteAuthored on Dec 8 2020, 4:43 PM
Parents
rG87bf9b9cbeeb: Convert LAGG_RLOCK() to NET_EPOCH_ENTER(). No functional changes.
Branches
Unknown
Tags
Unknown

Event Timeline