diff options
author | usa <usa@b2dd03c8-39d4-4d8f-98ff-823fe69b080e> | 2018-10-17 15:30:28 +0000 |
---|---|---|
committer | usa <usa@b2dd03c8-39d4-4d8f-98ff-823fe69b080e> | 2018-10-17 15:30:28 +0000 |
commit | 53f3f02bb2bf16c3426da3fbd0ea9e3783c81bc6 (patch) | |
tree | fd10f4074b96718b5266ba673803c14f6ab8bab6 /ext/openssl/History.md | |
parent | e68968288f45a5de3d1273fc30383fb67aed4fc7 (diff) |
updated ext/openssl to 2.0.9
git-svn-id: svn+ssh://ci.ruby-lang.org/ruby/branches/ruby_2_4@65134 b2dd03c8-39d4-4d8f-98ff-823fe69b080e
Diffstat (limited to 'ext/openssl/History.md')
-rw-r--r-- | ext/openssl/History.md | 23 |
1 files changed, 23 insertions, 0 deletions
diff --git a/ext/openssl/History.md b/ext/openssl/History.md index db7d98e2a4..eb7b272204 100644 --- a/ext/openssl/History.md +++ b/ext/openssl/History.md @@ -1,3 +1,26 @@ +Version 2.0.9 +============= + +Security fixes +-------------- + +* OpenSSL::X509::Name#<=> could incorrectly return 0 (= equal) for non-equal + objects. CVE-2018-16395 is assigned for this issue. + https://hackerone.com/reports/387250 + +Bug fixes +--------- + +* Fixed OpenSSL::PKey::*.{new,generate} immediately aborting if the thread is + interrupted. + [[Bug #14882]](https://bugs.ruby-lang.org/issues/14882) + [[GitHub #205]](https://github.com/ruby/openssl/pull/205) +* Fixed OpenSSL::X509::Name#to_s failing with OpenSSL::X509::NameError if + called against an empty instance. + [[GitHub #200]](https://github.com/ruby/openssl/issues/200) + [[GitHub #211]](https://github.com/ruby/openssl/pull/211) + + Version 2.0.8 ============= |