===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/errata59.html,v
retrieving revision 1.24
retrieving revision 1.25
diff -u -r1.24 -r1.25
--- www/errata59.html 2016/09/17 14:53:50 1.24
+++ www/errata59.html 2016/09/22 18:57:02 1.25
@@ -359,6 +359,29 @@
A source code patch exists which remedies this problem.
+
+
+027: RELIABILITY FIX: September 22, 2016
+ All architectures
+
+Avoid unbounded memory growth in libssl, which can be triggered by a TLS
+client repeatedly renegotiating and sending OCSP Status Request TLS extensions.
+
+
+A source code patch exists which remedies this problem.
+
+
+
+
+028: SECURITY FIX: September 22, 2016
+ All architectures
+
+Avoid falling back to a weak digest for (EC)DH when using SNI with libssl.
+
+
+A source code patch exists which remedies this problem.
+
+