openwrt/package
Ivan Pavlov df6db01f4f openssl: update to 3.5.5
This release incorporates the following bug fixes and mitigations:

  fixed Improper validation of PBMAC1 parameters in PKCS#12 MAC verification.
  (CVE-2025-11187)

  fixed Stack buffer overflow in CMS AuthEnvelopedData parsing.
  (CVE-2025-15467)

  fixed NULL dereference in SSL_CIPHER_find  () function on unknown cipher ID.
  (CVE-2025-15468)

  fixed openssl dgst one-shot codepath silently truncates inputs >16 MiB.
  (CVE-2025-15469)

  fixed TLS 1.3 CompressedCertificate excessive memory allocation.
  (CVE-2025-66199)

  fixed Heap out-of-bounds write in BIO_f_linebuffer on short writes.
  (CVE-2025-68160)

  fixed Unauthenticated/unencrypted trailing bytes with low-level OCB function calls.
  (CVE-2025-69418)

  fixed Out of bounds write in PKCS12_get_friendlyname  () UTF-8 conversion.
  (CVE-2025-69419)

  fixed Missing ASN1_TYPE validation in TS_RESP_verify_response  () function.
  (CVE-2025-69420)

  fixed NULL Pointer Dereference in PKCS12_item_decrypt_d2i_ex  () function.
  (CVE-2025-69421)

  fixed Missing ASN1_TYPE validation in PKCS#12 parsing.
  (CVE-2026-22795)

  fixed ASN1_TYPE Type Confusion in the PKCS7_digest_from_attributes  () function.
  (CVE-2026-22796)

Adjust patches due to formatting changes.

Signed-off-by: Ivan Pavlov <AuthorReflex@gmail.com>
Link: https://github.com/openwrt/openwrt/pull/21752
Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
2026-01-28 23:52:54 +01:00
..
base-files base-files: remove ftp user and group 2026-01-24 20:32:53 +01:00
boot uboot-tools: update to version 2026.01 2026-01-27 01:29:57 +01:00
devel strace: use bundled kernel headers 2026-01-21 11:41:59 +01:00
firmware ipq-wifi: Add entry for TP-Link TL-WA1201 v2 2026-01-28 12:05:55 +01:00
kernel airoha: an7581: enable USB support 2026-01-28 23:44:38 +01:00
libs openssl: update to 3.5.5 2026-01-28 23:52:54 +01:00
network tcpdump: update to 4.99.6 2026-01-28 23:41:32 +01:00
system uclient: provide virtual wget-any 2026-01-12 14:28:52 +01:00
utils mdadm: move init before fstab init runs 2026-01-27 01:45:10 +01:00
Makefile build: avoid errors during release candidate kernel packaging 2025-12-20 11:06:47 +01:00