openssl: bump to 1.1.1u
authorHauke Mehrtens <hauke@hauke-m.de>
Wed, 7 Jun 2023 20:37:47 +0000 (22:37 +0200)
committerHauke Mehrtens <hauke@hauke-m.de>
Wed, 7 Jun 2023 20:40:46 +0000 (22:40 +0200)
commitafb442270211c00282cecf323d568aa88391a32c
treeff703b3e12a3308e1a74259b15e7e6bd1155af5a
parent171b51519206b5e66ebd01d322f41d790976ce87
openssl: bump to 1.1.1u

Major changes between OpenSSL 1.1.1t and OpenSSL 1.1.1u [30 May 2023]

    o Mitigate for very slow `OBJ_obj2txt()` performance with gigantic
      OBJECT IDENTIFIER sub-identities.  (CVE-2023-2650)
    o Fixed documentation of X509_VERIFY_PARAM_add0_policy() (CVE-2023-0466)
    o Fixed handling of invalid certificate policies in leaf certificates
      (CVE-2023-0465)
    o Limited the number of nodes created in a policy tree ([CVE-2023-0464])

Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
package/libs/openssl/Makefile
package/libs/openssl/patches/200-x509-excessive-resource-use-verifying-policy-constra.patch [deleted file]
package/libs/openssl/patches/210-Ensure-that-EXFLAG_INVALID_POLICY-is-checked-even-in.patch [deleted file]