From d51bedcff66259a57ffa82961c6930ee83f60585 Mon Sep 17 00:00:00 2001 From: Rob Austein Date: Mon, 12 Mar 2012 17:32:45 +0000 Subject: CVE-2012-0884 (Bleichenbacher's "Million Message Attack") only applies to CMS when used for encryption, so I don't think it's a serious issue for RPKI CMS signed data, but upgrade to OpenSSL 1.0.0h anyway. svn path=/trunk/; revision=4395 --- openssl/update-snapshot.sh | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'openssl/update-snapshot.sh') diff --git a/openssl/update-snapshot.sh b/openssl/update-snapshot.sh index 94932f59..3320caeb 100755 --- a/openssl/update-snapshot.sh +++ b/openssl/update-snapshot.sh @@ -6,7 +6,7 @@ #version="1.0.0-stable-SNAP-$(date +%Y%m%d)" -version="1.0.0f" +version="1.0.0h" tarball="openssl-${version}.tar.gz" -- cgit v1.2.3