Subject: CVS commit: pkgsrc/security/openssl
From: Havard Eidnes
Date: 2014-04-02 14:11:35
Message id: 20140402121135.7600896@cvs.netbsd.org

Log Message:
Rename all remaining patch-?? files using the newer naming convention.

Add a fix for CVE-2014-0076:

  Fix for the attack described in the paper "Recovering OpenSSL
  ECDSA Nonces Using the FLUSH+RELOAD Cache Side-channel Attack"
  by Yuval Yarom and Naomi Benger. Details can be obtained from:
  http://eprint.iacr.org/2014/140

  Thanks to Yuval Yarom and Naomi Benger for discovering this
  flaw and to Yuval Yarom for supplying a fix.

Fix from culled from
http://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=2198be3483259de374f91e57d247d0fc667aef29

Bump PKGREVISION.

Files:
RevisionActionfile
1.186modifypkgsrc/security/openssl/Makefile
1.103modifypkgsrc/security/openssl/distinfo
1.1addpkgsrc/security/openssl/patches/patch-Configure
1.1addpkgsrc/security/openssl/patches/patch-Makefile.org
1.1addpkgsrc/security/openssl/patches/patch-Makefile.shared
1.1addpkgsrc/security/openssl/patches/patch-apps_Makefile
1.1addpkgsrc/security/openssl/patches/patch-config
1.1addpkgsrc/security/openssl/patches/patch-crypto_bn_bn.h
1.1addpkgsrc/security/openssl/patches/patch-crypto_bn_bn__lib.c
1.1addpkgsrc/security/openssl/patches/patch-crypto_bn_bn__prime.pl
1.1addpkgsrc/security/openssl/patches/patch-crypto_ec_ec2__mult.c
1.1addpkgsrc/security/openssl/patches/patch-tools_Makefile
1.27removepkgsrc/security/openssl/patches/patch-aa
1.43removepkgsrc/security/openssl/patches/patch-ac
1.16removepkgsrc/security/openssl/patches/patch-ad
1.8removepkgsrc/security/openssl/patches/patch-ae
1.26removepkgsrc/security/openssl/patches/patch-af
1.12removepkgsrc/security/openssl/patches/patch-ag
1.6removepkgsrc/security/openssl/patches/patch-ak