From: Hauke Mehrtens Date: Fri, 11 Aug 2023 20:45:40 +0000 (+0200) Subject: openssl: bump to 1.1.1v X-Git-Tag: v22.03.6~55 X-Git-Url: http://git.lede-project.org./?a=commitdiff_plain;h=de29f15af173e9434d11a00ffcf437bd6bc97727;p=openwrt%2Fopenwrt.git openssl: bump to 1.1.1v Major changes between OpenSSL 1.1.1u and OpenSSL 1.1.1v [1 Aug 2023] o Fix excessive time spent checking DH q parameter value (CVE-2023-3817) o Fix DH_check() excessive time with over sized modulus (CVE-2023-3446) Signed-off-by: Hauke Mehrtens --- diff --git a/package/libs/openssl/Makefile b/package/libs/openssl/Makefile index fa359b7e1a..c6d241ed1c 100644 --- a/package/libs/openssl/Makefile +++ b/package/libs/openssl/Makefile @@ -9,9 +9,9 @@ include $(TOPDIR)/rules.mk PKG_NAME:=openssl PKG_BASE:=1.1.1 -PKG_BUGFIX:=u +PKG_BUGFIX:=v PKG_VERSION:=$(PKG_BASE)$(PKG_BUGFIX) -PKG_RELEASE:=2 +PKG_RELEASE:=1 PKG_USE_MIPS16:=0 PKG_BUILD_PARALLEL:=1 @@ -25,7 +25,7 @@ PKG_SOURCE_URL:= \ ftp://ftp.pca.dfn.de/pub/tools/net/openssl/source/ \ ftp://ftp.pca.dfn.de/pub/tools/net/openssl/source/old/$(PKG_BASE)/ -PKG_HASH:=e2f8d84b523eecd06c7be7626830370300fbcc15386bf5142d72758f6963ebc6 +PKG_HASH:=d6697e2871e77238460402e9362d47d18382b15ef9f246aba6c7bd780d38a6b0 PKG_LICENSE:=OpenSSL PKG_LICENSE_FILES:=LICENSE