Subject: CVS commit: pkgsrc/security/stunnel
From: Ryo ONODERA
Date: 2014-04-29 15:47:45
Message id: 20140429134745.2FDF696@cvs.netbsd.org

Log Message:
Update to 5.01

Changelog:
Version 5.01, unreleased, urgency: HIGH:
* Security bugfixes
  - OpenSSL DLLs updated to version 1.0.1g.
    This version mitigates TLS heartbeat read overrun (CVE-2014-0160).
* New features
  - X.509 extensions added to the created self-signed stunnel.pem.
  - "FIPS = no" also allowed in non-FIPS builds of stunnel.
  - Search all certificates with the same subject name for a matching
    public key rather than only the first one (thx to Leon Winter).
  - Create logs in the local application data folder if stunnel folder
    is not writable on Win32.
* Bugfixes
  - close_notify not sent when SSL still has some data buffered.
  - Protocol negotiation with server-side SNI fixed.
  - A Mac OS X missing symbols fixed.
  - Win32 configuration file reload crash fixed.
  - Added s_pool_free() on exec+connect service retires.
  - Line-buffering enforced on stderr output.

Files:
RevisionActionfile
1.90modifypkgsrc/security/stunnel/Makefile
1.40modifypkgsrc/security/stunnel/distinfo