From owner-freebsd-security@FreeBSD.ORG Sat Jan 23 11:04:45 2010 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 7BCA6106566C for ; Sat, 23 Jan 2010 11:04:45 +0000 (UTC) (envelope-from remko@elvandar.org) Received: from mailgate.jr-hosting.nl (mailgate.jr-hosting.nl [78.46.126.30]) by mx1.freebsd.org (Postfix) with ESMTP id 3AB968FC16 for ; Sat, 23 Jan 2010 11:04:45 +0000 (UTC) Received: from websrv01.jr-hosting.nl (websrv01 [78.47.69.233]) by mailgate.jr-hosting.nl (Postfix) with ESMTP id 69B211CC49; Sat, 23 Jan 2010 11:48:07 +0100 (CET) Received: from a83-163-38-147.adsl.xs4all.nl ([83.163.38.147] helo=[10.0.2.66]) by websrv01.jr-hosting.nl with esmtpsa (TLSv1:AES128-SHA:128) (Exim 4.71 (FreeBSD)) (envelope-from ) id 1NYdXD-000Fli-A7; Sat, 23 Jan 2010 11:48:07 +0100 Mime-Version: 1.0 (Apple Message framework v1077) Content-Type: text/plain; charset=us-ascii From: Remko Lodder In-Reply-To: <1264018238.18129.46.camel@soundwave.ws.pitbpa0.priv.collaborativefusion.com> Date: Sat, 23 Jan 2010 11:48:06 +0100 Content-Transfer-Encoding: quoted-printable Message-Id: <4887DC5C-CC18-4CCC-9484-FF5FE91024E0@elvandar.org> References: <1264018238.18129.46.camel@soundwave.ws.pitbpa0.priv.collaborativefusion.com> To: Brian A. Seklecki X-Mailer: Apple Mail (2.1077) Cc: freebsd-security@freebsd.org Subject: Re: [Fwd: OpenSSL 1.0.0 beta5 release] X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 23 Jan 2010 11:04:45 -0000 Dear Brian, I am not sure whether there was a reply yet, but we received the message = in good order and had logged this on our agenda. Someone will have a look at this and take appropriate actions. Best regards, Remko On Jan 20, 2010, at 9:10 PM, Brian A. Seklecki wrote: > All: >=20 > Per Daniele Sluijters's inquiry on the 15th,CVE-2009-4355, as=20 > well as with a provision/draft fix for CVE-2009-3555 > MITM/Renegotiation Venerability. >=20 > I suspect we wont have a patch out for RELENG_6_3 by the 31st? =20 > But I'm willing to maintain one for another few months. >=20 > ~BAS >=20 > -------- Forwarded Message -------- > From: OpenSSL > Reply-to: openssl-users@openssl.org > To: openssl-users@openssl.org, openssl-announce@openssl.org > Subject: OpenSSL 1.0.0 beta5 release > Date: Wed, 20 Jan 2010 19:19:16 +0100 >=20 > -----BEGIN PGP SIGNED MESSAGE----- > Hash: SHA1 >=20 >=20 > OpenSSL version 1.0.0 Beta 5 > =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D >=20 > [..snip...] >=20 > Since the fourth beta, the following has happened: >=20 > - Provisional TLS session renegotiation fix > - Option to output hash using older algorithm in x509 utility > - Compression session handling bug fix > - Build system fixes. > - Other bug fixes. >=20 > Reports and patches should be sent to openssl-bugs@openssl.org. >=20 > [..snip...] >=20 >=20 > _______________________________________________ > freebsd-security@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-security > To unsubscribe, send any mail to = "freebsd-security-unsubscribe@freebsd.org" --=20 /"\ Best regards, | remko@FreeBSD.org \ / Remko Lodder | remko@EFnet X http://www.evilcoder.org/ | / \ ASCII Ribbon Campaign | Against HTML Mail and News