summaryrefslogtreecommitdiffstats
path: root/meta/recipes-devtools/go/go-cross.inc
diff options
context:
space:
mode:
authorRoss Burton <ross.burton@intel.com>2017-03-14 12:49:47 +0000
committerRichard Purdie <richard.purdie@linuxfoundation.org>2017-03-14 14:42:18 +0000
commit500a5e44a9d6bf9d795f4d1cf28333ed71f0e07b (patch)
tree071ede91b2326343c95f604e56707ec5f2770496 /meta/recipes-devtools/go/go-cross.inc
parent9e404449ab6cfc94fd3fe33d21feed07f3717192 (diff)
downloadpoky-500a5e44a9d6bf9d795f4d1cf28333ed71f0e07b.tar.gz
openssl: actually apply Use-SHA256-not-MD5-as-default-digest.patch
This patch was added to fix a CVE, but wasn't actually added to SRC_URI: CVE: CVE-2004-2761 The MD5 Message-Digest Algorithm is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of MD5 in the signature algorithm of an X.509 certificate. (From OE-Core rev: 8791800f84321b3f46772bc2d9e4f754e6213946) Signed-off-by: Ross Burton <ross.burton@intel.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-devtools/go/go-cross.inc')
0 files changed, 0 insertions, 0 deletions