[Buildroot] [PATCH 1/1] package/gnutls: security bump to 3.6.13

Peter Korsgaard peter at korsgaard.com
Thu Apr 9 06:09:20 UTC 2020


>>>>> "Stefan" == Stefan Sørensen <stefan.sorensen at spectralink.com> writes:

 > Fixes the following security issue:
 >  * CVE-2020-11501: It was found that GnuTLS 3.6.3 introduced a
 >    regression in the DTLS protocol implementation. This caused the DTLS
 >    client to not contribute any randomness to the DTLS negotiation
 >    breaking the security guarantees of the DTLS protocol.

Committed to 2019.02.x, 2019.11.x and 2020.02.x, thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list