[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

newest libssl in woody


the newest libssl in woody,  from security updates is version 0.9.6c-2.woody.2
However, I have on my machine version 0.9.6g-0.woody.1 and I've seen it in
ftp too. From changelog:

openssl (0.9.6g-0.woody.1) stable; urgency=low

  * new upstream version
  * fix manpage names (closes: #156717, #156718, #156719, #156721)
  * Use proper error handling instead of 'assertions' in buffer
    overflow checks added in 0.9.6e.  This prevents DoS (the
    assertions could call abort()). (closes: #155985, #156495)
  * Fix ASN1 checks. Check for overflow by comparing with LONG_MAX
    and get fix the header length calculation.
  * include support for new sh* architectures (closes: #155117)

 -- Christoph Martin <christoph.martin@uni-mainz.de>  Thu, 15 Aug 2002 16:43:55 

How is this possible? did someone upload old version to security updates?

Matus "fantomas" Uhlar, uhlar@fantomas.sk ; http://www.fantomas.sk/
Warning: I don't wish to receive spam to this address.
Varovanie: Nezelam si na tuto adresu dostavat akukolvek reklamnu postu.
M$ Win's are shit, do not use it !

Reply to: