immortalwrt/package/libs
Andre Heider 075c5678b2
openssl: bump to 1.1.1p
Changes between 1.1.1o and 1.1.1p [21 Jun 2022]

  *) In addition to the c_rehash shell command injection identified in
     CVE-2022-1292, further bugs where the c_rehash script does not
     properly sanitise shell metacharacters to prevent command injection have been
     fixed.

     When the CVE-2022-1292 was fixed it was not discovered that there
     are other places in the script where the file names of certificates
     being hashed were possibly passed to a command executed through the shell.

     This script is distributed by some operating systems in a manner where
     it is automatically executed.  On such operating systems, an attacker
     could execute arbitrary commands with the privileges of the script.

     Use of the c_rehash script is considered obsolete and should be replaced
     by the OpenSSL rehash command line tool.
     (CVE-2022-2068)
     [Daniel Fiala, Tomáš Mráz]

  *) When OpenSSL TLS client is connecting without any supported elliptic
     curves and TLS-1.3 protocol is disabled the connection will no longer fail
     if a ciphersuite that does not use a key exchange based on elliptic
     curves can be negotiated.
     [Tomáš Mráz]

Signed-off-by: Andre Heider <a.heider@gmail.com>
Signed-off-by: Tianling Shen <cnsztl@immortalwrt.org>
(cherry picked from commit 06892d7fbb)
2022-07-04 16:55:47 +08:00
..
argp-standalone argp-standalone: add host-compile ability 2022-04-03 17:55:44 +08:00
elfutils elfutils: fix host compilation with Alpine Linux 2022-04-03 00:18:05 +08:00
gettext-full gettext-full: add gmsgfmt symlink in host install 2022-04-03 00:19:59 +08:00
gmp gmp: update to 6.2.1 2021-02-15 12:13:58 +08:00
jansson jansson: Activate link time optimization (LTO) 2020-09-07 17:20:07 +08:00
libaudit libaudit: add host-build required by policycoreutils/host 2020-09-02 11:30:31 +08:00
libbsd libbsd: update to 0.10.0 2020-02-23 15:26:25 +08:00
libcap libcap: Update to version 2.63 2022-02-16 12:45:15 +08:00
libevent2 libevent2: update to 2.1.12 2021-02-15 12:14:40 +08:00
libiconv treewide: sync with upstream source 2020-03-28 23:37:17 +08:00
libiconv-full libiconv-full: update to version 1.16 2020-11-28 19:05:28 +08:00
libjson-c libjson-c: remove old math patch 2021-08-31 18:27:15 +08:00
libmnl libmnl: update to 1.0.5 2022-05-10 14:27:06 +08:00
libnetfilter-conntrack libnetfilter-conntrack: update to 1.0.8 2020-12-15 11:39:31 +08:00
libnfnetlink libnfnetlink: update to 1.0.2 2022-05-10 14:26:52 +08:00
libnftnl libnftnl: update to 1.2.0 2021-08-09 12:18:41 +08:00
libnl libnl: update to lastest version 2019-11-23 09:58:26 -08:00
libnl-tiny treewide: unmark selected packages nonshared 2021-07-03 17:22:14 +08:00
libpcap tcpdump: libpcap: Remove http://www.us.tcpdump.org mirror 2021-12-30 23:53:55 +08:00
libselinux libselinux: use musl-fts for host builds 2022-04-03 00:16:21 +08:00
libsemanage libsemanage: update to version 3.3 2021-11-06 00:34:56 +08:00
libsepol libsepol: update to version 3.3 2021-11-06 00:34:06 +08:00
libtool treewide: sync with upstream source 2020-03-28 23:37:17 +08:00
libubox libubox: update to the latest version 2022-04-18 17:16:43 +08:00
libunwind libunwind: Add MIPS64 dep check 2021-03-02 12:04:21 +08:00
libusb libusb: Fix parsing of descriptors for multi-configuration devices 2021-02-22 12:02:39 +08:00
mbedtls mbedtls: mark as nonshared 2022-06-11 00:26:19 +08:00
musl-fts musl-fts: remove shared libraries from host 2022-04-03 00:17:43 +08:00
ncurses ncurses: update to 6.3 2022-03-25 10:33:40 +08:00
nettle nettle: update to 3.7.3 2021-08-09 12:19:35 +08:00
openssl openssl: bump to 1.1.1p 2022-07-04 16:55:47 +08:00
pcre pcre: disable shared libraries for host builds 2022-04-03 00:17:53 +08:00
popt treewide: sync with upstream source 2020-03-28 23:37:17 +08:00
readline Revert "package: libs: ncurses/readline use PKG_ABI_VERSION" 2021-02-19 03:28:41 +08:00
sysfsutils treewide: sync with upstream source 2020-03-28 23:37:17 +08:00
toolchain toolchain: reproducible libstdcpp 2022-04-04 17:20:07 +08:00
uclient uclient: update to Git version 2020-12-10 2020-12-15 11:33:42 +08:00
ustream-ssl ustream-ssl: update to Git version 2022-01-16 2022-03-01 20:53:04 +08:00
wolfssl wolfssl: disable AES-NI by default for x86_64 2022-06-27 14:50:40 +08:00
zlib libs/zlib: fix implicit function declaration warning 2022-04-04 17:17:09 +08:00