Changes between 3.0.9 and 3.0.10 [1 Aug 2023]
 * Fix excessive time spent checking DH q parameter value ([CVE-2023-3817])
 * Fix DH_check() excessive time with over sized modulus ([CVE-2023-3446])
 * Do not ignore empty associated data entries with AES-SIV ([CVE-2023-2975])
Signed-off-by: Ivan Pavlov <AuthorReflex@gmail.com>
(cherry picked from commit 92602f823a)
		
	
		
			
				
	
	
		
			24 lines
		
	
	
		
			897 B
		
	
	
	
		
			Diff
		
	
	
	
	
	
			
		
		
	
	
			24 lines
		
	
	
		
			897 B
		
	
	
	
		
			Diff
		
	
	
	
	
	
From 0000000000000000000000000000000000000000 Mon Sep 17 00:00:00 2001
 | 
						|
From: Eneas U de Queiroz <cote2004-github@yahoo.com>
 | 
						|
Date: Thu, 27 Sep 2018 08:29:21 -0300
 | 
						|
Subject: Do not use host kernel version to disable AFALG
 | 
						|
 | 
						|
This patch prevents the Configure script from using the host kernel
 | 
						|
version to disable building the AFALG engine on openwrt targets.
 | 
						|
 | 
						|
Signed-off-by: Eneas U de Queiroz <cote2004-github@yahoo.com>
 | 
						|
 | 
						|
--- a/Configure
 | 
						|
+++ b/Configure
 | 
						|
@@ -1674,7 +1674,9 @@ $config{CFLAGS} = [ map { $_ eq '--ossl-
 | 
						|
 
 | 
						|
 unless ($disabled{afalgeng}) {
 | 
						|
     $config{afalgeng}="";
 | 
						|
-    if (grep { $_ eq 'afalgeng' } @{$target{enable}}) {
 | 
						|
+    if ($target =~ m/openwrt$/) {
 | 
						|
+        push @{$config{engdirs}}, "afalg";
 | 
						|
+    } elsif (grep { $_ eq 'afalgeng' } @{$target{enable}}) {
 | 
						|
         my $minver = 4*10000 + 1*100 + 0;
 | 
						|
         if ($config{CROSS_COMPILE} eq "") {
 | 
						|
             my $verstr = `uname -r`;
 |