diff options
author | clement <clement@FreeBSD.org> | 2004-10-13 09:17:38 +0000 |
---|---|---|
committer | clement <clement@FreeBSD.org> | 2004-10-13 09:17:38 +0000 |
commit | ca2f10e3eb94c13b5d5fdf4abc95a2f846b3d208 (patch) | |
tree | 964858b32f7b7c526ea64eabc6a56a42c6dab879 /www/apache2/Makefile.modules.3rd | |
parent | 3950d4af72cefb6274f0de001d4a30382afe533b (diff) | |
download | FreeBSD-ports-ca2f10e3eb94c13b5d5fdf4abc95a2f846b3d208.zip FreeBSD-ports-ca2f10e3eb94c13b5d5fdf4abc95a2f846b3d208.tar.gz |
- Yet Another Security Fix
Fix CAN-2004-0885:
* modules/ssl/ssl_engine_kernel.c (ssl_hook_Access): Ensure that a
correct cipher suite has been negotiated, else deny access.
* modules/ssl/ssl_engine_init.c (ssl_init_ctx_protocol): With OpenSSL
0.9.7, prevent session resumption during a renegotiation to force the
client to negotiate a new (and acceptable) cipher suite.
Credits: Hartmut Keil, Joe Orton
Diffstat (limited to 'www/apache2/Makefile.modules.3rd')
0 files changed, 0 insertions, 0 deletions