gnutls: security bump to version 3.5.10
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Mon, 6 Mar 2017 14:55:06 +0000 (11:55 -0300)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Mon, 6 Mar 2017 16:45:23 +0000 (17:45 +0100)
commit6fdb2b109bdec24ea426e0a6786ced7dbb591732
treea0533f39b13ab501de2fdf2f6a89c074834f9fa1
parent7bbdd9afa4fa1014fdb050c1437d6cd90ca3a44a
gnutls: security bump to version 3.5.10

Fixes:
GNUTLS-SA-2017-3A - Addressed integer overflow resulting to invalid
memory write in OpenPGP certificate parsing.
GNUTLS-SA-2017-3B - Addressed crashes in OpenPGP certificate parsing,
related to private key parser. No longer allow OpenPGP certificates
(public keys) to contain private key sub-packets.
GNUTLS-SA-2017-3C - Addressed large allocation in OpenPGP certificate
parsing, that could lead in out-of-memory condition.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/gnutls/gnutls.hash
package/gnutls/gnutls.mk