From: Bodo Möller Date: Thu, 28 Sep 2006 13:50:41 +0000 (+0000) Subject: All 0.9.8d patches have been applied to HEAD now, so we no longer need X-Git-Tag: OpenSSL_0_9_8k^2~1118 X-Git-Url: https://git.librecmc.org/?a=commitdiff_plain;h=3c5406b35cbbfd8d9f681727df0f306ad3418dc7;p=oweals%2Fopenssl.git All 0.9.8d patches have been applied to HEAD now, so we no longer need the redundant entries under the 0.9.9 heading. --- diff --git a/CHANGES b/CHANGES index b11a528170..ec05bca41b 100644 --- a/CHANGES +++ b/CHANGES @@ -2,17 +2,7 @@ OpenSSL CHANGES _______________ - Changes between 0.9.8d and 0.9.9 [xx XXX xxxx] - - *) Fix ASN.1 parsing of certain invalid structures that can result - in a denial of service. (CVE-2006-2937) [Steve Henson] - - *) Fix buffer overflow in SSL_get_shared_ciphers() function. - (CVE-2006-3738) [Tavis Ormandy and Will Drewry, Google Security Team] - - *) Fix SSL client code which could crash if connecting to a - malicious SSLv2 server. (CVE-2006-4343) - [Tavis Ormandy and Will Drewry, Google Security Team] + Changes between 0.9.8e and 0.9.9 [xx XXX xxxx] *) Add an X509_CRL_METHOD structure to allow CRL processing to be redirected to external functions. This can be used to increase CRL handling