Link [ pkgsrc | NetBSD | pkgsrc git mirror | PR fulltext-search | netbsd commit viewer ]


   
        usage: [branch:branch] [user:user] [path[@revision]] keyword [... [-excludekeyword [...]]] (e.g. branch:MAIN pkgtools/pkg)




switch to index mode

recent branches: MAIN (24m)  pkgsrc-2024Q1 (10d)  pkgsrc-2023Q4 (57d)  pkgsrc-2023Q2 (89d)  pkgsrc-2023Q3 (169d) 

2024-05-27 21:47:57 UTC Now

2011-02-16 17:45:09 UTC MAIN commitmail json YAML

Update openssh package to 5.8.1 (5.8p1).

For changes from 5.5 to 5.7, please refer http://openssh.com/txt/release-5.7
and http://openssh.com/txt/release-5.6 in detail.

Changes since OpenSSH 5.7
=========================

Security:

* Fix vulnerability in legacy certificate signing introduced in
  OpenSSH-5.6 and found by Mateusz Kocielski.

  Legacy certificates signed by OpenSSH 5.6 or 5.7 included data from
  the stack in place of a random nonce field. The contents of the stack
  do not appear to contain private data at this point, but this cannot
  be stated with certainty for all platform, library and compiler
  combinations. In particular, there exists a risk that some bytes from
  the privileged CA key may be accidentally included.

  A full advisory for this issue is available at:
  http://www.openssh.com/txt/legacy-cert.adv

Portable OpenSSH Bugfixes:

* Fix compilation failure when enableing SELinux support.

* Do not attempt to call SELinux functions when SELinux is disabled.
  bz#1851

(taca)