openssl

Description:full-strength general purpose cryptography library (including SSL v2/v3 and TLS v1)
License: openssl
Homepage:http://www.openssl.org/
Location:Portage
Last Change: 20 May 2012; Mike Frysinger
-openssl-0.9.8r.ebuild, -openssl-0.9.8s-r1.ebuild, -openssl-0.9.8s.ebuild, -openssl-0.9.8t.ebuild, -openssl-1.0.0d.ebuild, -openssl-1.0.0e-r1.ebuild, -openssl-1.0.0e.ebuild, -openssl-1.0.0f-r1.ebuild, -openssl-1.0.0f.ebuild, -openssl-1.0.0g.ebuild, -openssl-1.0.1.ebuild, openssl-1.0.0h.ebuild, openssl-1.0.0i.ebuild, openssl-1.0.0j.ebuild, openssl-1.0.1a.ebuild, openssl-1.0.1b.ebuild, openssl-1.0.1c.ebuild:
Have c_rehash default to /etc/ssl #416717 by Marc Schiffbauer.
ChangeLog
Legend:
  • + - stable
  • ~ - unstable
  • M - hardmask
alpha amd64 arm hppa ia64 m68k mips ppc ppc64 s390 sh sparc x86
1.0.1c diff ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~
1.0.1b diff ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~
1.0.1a diff ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~
1.0.0j diff + + + + + + ~ + + + + + +
1.0.0i diff + + + + + + ~ + + + + + +
1.0.0h diff + + + + + + ~ + + + + + +
0.9.8x diff ~ + ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ +
0.9.8w diff ~ + ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ +
0.9.8v diff ~ + ~ ~ ~ ~ ~ ~ + ~ ~ ~ +
0.9.8u ~ + ~ ~ ~ ~ ~ + + ~ ~ ~ +

USE flags

  • bindist - Disable EC/RC5 algorithms (as they seem to be patented)
  • gmp - Adds support for dev-libs/gmp (GNU MP library)
  • kerberos - Adds kerberos support
  • rfc3779 - Enable support for RFC 3779 (X.509 Extensions for IP Addresses and AS Identifiers)
  • sse2 - faster floating point optimization for SSE2 capable chips
  • static-libs - Build static libraries
  • test - Workaround to pull in packages needed to run with FEATURES=test. Portage-2.1.2 handles this internally, so don't set it in make.conf/package.use anymore
  • vanilla - Do not add extra patches which change default behaviour; DO NOT USE THIS ON A GLOBAL SCALE as the severity of the meaning changes drastically
  • zlib - Adds support for zlib (de)compression

Security Advisory

Date Severity Title
3 months normal OpenSSL: Multiple vulnerabilities
8 months high OpenSSL: Multiple vulnerabilities
over 2 years normal OpenSSL: Multiple vulnerabilities
about 3 years normal OpenSSL: Denial of Service
over 3 years normal OpenSSL: Certificate validation error
almost 4 years normal OpenSSL: Denial of Service
over 4 years high OpenSSL: Remote execution of arbitrary code
over 4 years high OpenSSL: Multiple vulnerabilities
over 5 years high OpenSSL: Multiple vulnerabilities
over 5 years normal OpenSSL, AMD64 x86 emulation base libraries: RSA signature forgery
over 6 years low OpenSSL: SSL 2.0 protocol rollback
over 7 years normal OpenSSL, Groff: Insecure tempfile handling
about 8 years normal Multiple OpenSSL Vulnerabilities

Also available in: Atom

Thank you!