strongswan: security bump to version 5.3.4
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Mon, 16 Nov 2015 19:55:06 +0000 (16:55 -0300)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Mon, 16 Nov 2015 20:14:59 +0000 (21:14 +0100)
commit8963207bf6837fb19ff811d87486cf10d790cc38
tree74b6fffae29d279ee4667518b6aa80828f62806c
parent8a3478d9b6c19fbbfb9e2c1058b570c868062ebd
strongswan: security bump to version 5.3.4

Fixes:
CVE-2015-8023 - authentication bypass vulnerability in the eap-mschapv2
plugin that was caused by insufficient verification of the internal
state when handling EAP-MSCHAPv2 Success messages received by the
client.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/strongswan/strongswan.hash
package/strongswan/strongswan.mk