[BACK]Return to errata31.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/errata31.html between version 1.14 and 1.15

version 1.14, 2003/03/03 18:16:13 version 1.15, 2003/03/04 13:03:43
Line 65 
Line 65 
 <li><font color=#009000><strong>021: SECURITY FIX: February 23, 2003</strong></font><br>  <li><font color=#009000><strong>021: SECURITY FIX: February 23, 2003</strong></font><br>
 In  In
 <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ssl&amp;sektion=8">ssl(8)</a> an information leak can occur via timing by performing a MAC computation  <a href="http://www.openbsd.org/cgi-bin/man.cgi?query=ssl&amp;sektion=8">ssl(8)</a> an information leak can occur via timing by performing a MAC computation
 even if incorrrect block cipher padding has been found, this is a  even if incorrect block cipher padding has been found, this is a
 countermeasure. Also, check for negative sizes in memory allocation routines.<br>  countermeasure. Also, check for negative sizes in memory allocation routines.<br>
 <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.1/common/021_ssl.patch">A  <a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.1/common/021_ssl.patch">A
 source code patch exists which fixes these two issues</a>.  source code patch exists which fixes these two issues</a>.

Legend:
Removed from v.1.14  
changed lines
  Added in v.1.15