Files
poky/meta/recipes-support
Li Wang 21b1cd1c24 nss: CVE-2013-5606
the patch comes from:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-5606
https://bugzilla.mozilla.org/show_bug.cgi?id=910438
http://hg.mozilla.org/projects/nss/rev/d29898e0981c

The CERT_VerifyCert function in lib/certhigh/certvfy.c in
Mozilla Network Security Services (NSS) 3.15 before 3.15.3 provides
an unexpected return value for an incompatible key-usage certificate
when the CERTVerifyLog argument is valid, which might allow remote
attackers to bypass intended access restrictions via a crafted certificate.

(From OE-Core rev: 1e153b1b21276d56144add464d592cd7b96a4ede)

Signed-off-by: Li Wang <li.wang@windriver.com>
Signed-off-by: Jackie Huang <jackie.huang@windriver.com>
Signed-off-by: Saul Wold <sgw@linux.intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
2014-07-29 09:58:27 +01:00
..
2014-06-06 09:26:04 +01:00
2014-07-23 21:59:15 +01:00
2014-01-10 15:16:50 +00:00
2014-07-25 15:33:58 +01:00
2014-07-08 11:20:12 +01:00
2014-01-06 11:13:55 +00:00
2014-05-06 17:59:16 +01:00
2014-07-17 12:28:52 +01:00
2014-06-16 15:31:40 +01:00
2014-01-02 12:50:18 +00:00
2014-06-03 16:49:20 +01:00
2014-01-02 22:39:23 +00:00
2014-01-02 22:39:23 +00:00
2014-04-24 17:55:15 +01:00
2014-05-11 12:27:22 +01:00
2014-06-25 13:51:46 +01:00
2014-07-19 00:08:59 +01:00
2014-07-17 12:28:52 +01:00
2014-07-25 15:34:00 +01:00
2014-07-29 09:58:27 +01:00
2014-01-02 12:50:18 +00:00
2014-06-16 15:31:40 +01:00
2014-06-25 13:51:46 +01:00