Subject: CVS commit: pkgsrc/security/openssl
From: Tonnerre Lombard
Date: 2008-06-03 23:39:40
Message id: 20080603213940.86364175D0@cvs.netbsd.org

Log Message:
Fix two Denial of Service vulnerabilities in OpenSSL 0.9.8g:
 - Fix flaw if 'Server Key exchange message' is omitted from a TLS handshake
   which could lead to a silent crash.
 - Fix double free in TLS server name extensions which could lead to a remote
   crash.

Patches from upstream.

Files:
RevisionActionfile
1.132modifypkgsrc/security/openssl/Makefile
1.60modifypkgsrc/security/openssl/distinfo
1.12addpkgsrc/security/openssl/patches/patch-ab
1.8addpkgsrc/security/openssl/patches/patch-ah