-
Committer:
Bazaar Package Importer
-
Author(s):
Jamie Strandboge
-
Date:
2009-09-15 15:32:04 UTC
-
Revision ID:
james.westby@ubuntu.com-20090915153204-cqat2iaujmf5onvs
Tags: 4:4.2.2-0ubuntu5.2
* SECURITY UPDATE: fix vulnerability with NULL byte in Subject Alternate
Names field of X.509 certificates
- debian/patches/CVE-2009-2702.diff: verify that the QString length of the
SAN is not shorter than the ASN1 length
- CVE-2009-2702