polarssl: security bump to version 1.2.17
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Fri, 16 Oct 2015 15:54:36 +0000 (12:54 -0300)
committerPeter Korsgaard <peter@korsgaard.com>
Fri, 16 Oct 2015 21:26:47 +0000 (23:26 +0200)
commit7bc8f03844f90ad7da2ff39ddf8dc2e6e3d575d1
tree79ecdbb1c6d4ad99e51ea9786b7d44042afebda2
parent66bff1be05f5b47cb2c6edd6fcd357328b116a89
polarssl: security bump to version 1.2.17

Fixes:
CVE-2015-5291 - Remote attack on clients using session tickets or SNI

Also includes countermeasures against Lenstra's RSA-CRT attach for
PKCS#1 v1.5 signatures (1.2.16) and the Logjam attack (1.2.15).

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Reviewed-by: Vicente Olivert Riera <Vincent.Riera@imgtec.com>
Tested-by: Vicente Olivert Riera <Vincent.Riera@imgtec.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/polarssl/polarssl.hash
package/polarssl/polarssl.mk