Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump openssl version of static builds to 1.1.1v #15779

Merged
merged 1 commit into from Aug 14, 2023
Merged

Conversation

tkatsoulas
Copy link
Contributor

@tkatsoulas tkatsoulas commented Aug 9, 2023

Summary

New version of openSSL is published a while back. Major changes introduced in a meanwhile

Introduced in the transition between OpenSSL 1.1.1u and OpenSSL 1.1.1v [1 Aug 2023]

  • Fix excessive time spent checking DH q parameter value (CVE-2023-3817)
  • Fix DH_check() excessive time with over sized modulus (CVE-2023-3446)

Introduced in the transition between OpenSSL 1.1.1t and OpenSSL 1.1.1u [30 May 2023]

  • Mitigate for very slow OBJ_obj2txt() performance with gigantic OBJECT IDENTIFIER sub-identities. (CVE-2023-2650)
  • Fixed documentation of X509_VERIFY_PARAM_add0_policy() (CVE-2023-0466)
  • Fixed handling of invalid certificate policies in leaf certificates (CVE-2023-0465)
  • Limited the number of nodes created in a policy tree ([CVE-2023-0464])
Test Plan
Additional Information
  • Include this in the patch release for 1.42.1

@github-actions github-actions bot added area/packaging Packaging and operating systems support area/docs labels Aug 9, 2023
@Ferroin Ferroin merged commit 23118ba into master Aug 14, 2023
123 checks passed
@ilyam8 ilyam8 deleted the bump-openssl-version branch August 14, 2023 12:45
Ferroin pushed a commit that referenced this pull request Aug 16, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/docs area/packaging Packaging and operating systems support
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants