From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mga02.intel.com (mga02.intel.com [134.134.136.20]) by mail.openembedded.org (Postfix) with ESMTP id 458EC65EB4 for ; Mon, 9 Jun 2014 15:57:08 +0000 (UTC) Received: from orsmga001.jf.intel.com ([10.7.209.18]) by orsmga101.jf.intel.com with ESMTP; 09 Jun 2014 08:57:09 -0700 X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="4.98,1003,1392192000"; d="scan'208";a="525679869" Received: from mmckenna-mobl2.ger.corp.intel.com (HELO peggleto-mobl5.ger.corp.intel.com) ([10.252.121.49]) by orsmga001.jf.intel.com with ESMTP; 09 Jun 2014 08:57:08 -0700 From: Paul Eggleton To: openembedded-core@lists.openembedded.org Date: Mon, 9 Jun 2014 16:56:52 +0100 Message-Id: X-Mailer: git-send-email 1.9.3 Subject: [dylan][PATCH 0/6] OpenSSL CVE fixes for the dylan branch (cover letter only) X-BeenThere: openembedded-core@lists.openembedded.org X-Mailman-Version: 2.1.12 Precedence: list List-Id: Patches and discussions about the oe-core layer List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 09 Jun 2014 15:57:14 -0000 These are the exact same patches as in the dora series, so for the sake of people's inboxes I won't repeat them. The following changes since commit 7ff1924674871d604f9656f3928b91dc417c7246: gnutls: patch for CVE-2014-3466 backported (2014-06-06 10:27:23 +0100) are available in the git repository at: git://git.openembedded.org/openembedded-core-contrib paule/openssl-dylan http://cgit.openembedded.org/cgit.cgi/openembedded-core-contrib/log/?h=paule/openssl-dylan Paul Eggleton (5): openssl: fix CVE-2014-0195 openssl: use upstream fix for CVE-2014-0198 openssl: fix CVE-2014-0221 openssl: fix CVE-2014-0224 openssl: fix CVE-2014-3470 Yue Tao (1): openssl: fix for CVE-2010-5298 .../openssl-1.0.1e-cve-2014-0195.patch | 40 ++++++++ .../openssl-1.0.1e-cve-2014-0198.patch | 38 ++++++++ .../openssl-1.0.1e-cve-2014-0221.patch | 38 ++++++++ .../openssl-1.0.1e-cve-2014-0224.patch | 103 +++++++++++++++++++++ .../openssl-1.0.1e-cve-2014-3470.patch | 31 +++++++ .../openssl-1.0.1e/openssl-CVE-2010-5298.patch | 24 +++++ .../openssl-1.0.1e/openssl-CVE-2014-0198-fix.patch | 23 ----- .../recipes-connectivity/openssl/openssl_1.0.1e.bb | 7 +- 8 files changed, 280 insertions(+), 24 deletions(-) create mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-1.0.1e-cve-2014-0195.patch create mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-1.0.1e-cve-2014-0198.patch create mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-1.0.1e-cve-2014-0221.patch create mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-1.0.1e-cve-2014-0224.patch create mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-1.0.1e-cve-2014-3470.patch create mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-CVE-2010-5298.patch delete mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.1e/openssl-CVE-2014-0198-fix.patch -- 1.9.3