openbsd-ports/security/gnutls
robert f3cf746bb3 SECURITY:
upgrade to 1.0.20;

Mr.   Hornik   has   discovered  error  in  X.509  certificate chain
verification procedure in GnuTLS library. The certificate chain should
be verified from last root certificate to the first certificate.
Otherwise  a lot of unauthorized CPU processing can be forced to check
certificate signatures signed with arbitrary RSA/DSA keys chosen by
attacker.;

ok maintainer
2004-09-22 08:06:40 +00:00
..
patches SECURITY: 2004-09-22 08:06:40 +00:00
pkg SECURITY: 2004-09-22 08:06:40 +00:00
distinfo SECURITY: 2004-09-22 08:06:40 +00:00
Makefile SECURITY: 2004-09-22 08:06:40 +00:00