=================================================================== RCS file: /cvsrepo/anoncvs/cvs/www/errata59.html,v retrieving revision 1.24 retrieving revision 1.25 diff -c -r1.24 -r1.25 *** www/errata59.html 2016/09/17 14:53:50 1.24 --- www/errata59.html 2016/09/22 18:57:02 1.25 *************** *** 359,364 **** --- 359,387 ---- A source code patch exists which remedies this problem.

+

  • + + 027: RELIABILITY FIX: September 22, 2016 +   All architectures +
    + Avoid unbounded memory growth in libssl, which can be triggered by a TLS + client repeatedly renegotiating and sending OCSP Status Request TLS extensions. +
    + + A source code patch exists which remedies this problem. +

    + +

  • + + 028: SECURITY FIX: September 22, 2016 +   All architectures +
    + Avoid falling back to a weak digest for (EC)DH when using SNI with libssl. +
    + + A source code patch exists which remedies this problem. +

    +