summaryrefslogtreecommitdiffstats
path: root/patches/source/gnutls/gnutls-2.8.4_fix-expired-cert.diff
diff options
context:
space:
mode:
author Patrick J Volkerding <volkerdi@slackware.com>2018-05-25 23:29:36 +0000
committer Eric Hameleers <alien@slackware.com>2018-05-31 15:04:55 -0700
commitd8220d28e5d53cd896b28d9dea13e2258923f35a (patch)
tree0ae3d22871d934a49ba1689084ba6fe301ee48e0 /patches/source/gnutls/gnutls-2.8.4_fix-expired-cert.diff
parent5a12e7c134274dba706667107d10d231517d3e05 (diff)
downloadcurrent-13.0.tar.gz
current-13.0.tar.xz
Fri May 25 23:29:36 UTC 201813.0
patches/packages/glibc-zoneinfo-2018e-noarch-2_slack13.0.txz: Rebuilt. Handle removal of US/Pacific-New timezone. If we see that the machine is using this, it will be automatically switched to US/Pacific.
Diffstat (limited to 'patches/source/gnutls/gnutls-2.8.4_fix-expired-cert.diff')
-rw-r--r--patches/source/gnutls/gnutls-2.8.4_fix-expired-cert.diff23
1 files changed, 23 insertions, 0 deletions
diff --git a/patches/source/gnutls/gnutls-2.8.4_fix-expired-cert.diff b/patches/source/gnutls/gnutls-2.8.4_fix-expired-cert.diff
new file mode 100644
index 000000000..cb0a8d567
--- /dev/null
+++ b/patches/source/gnutls/gnutls-2.8.4_fix-expired-cert.diff
@@ -0,0 +1,23 @@
+commit 45c1fd2912e1680e7aafda931a6acdf97c8f3c00
+Author: Simon Josefsson <simon@josefsson.org>
+Date: Tue Oct 20 11:27:13 2009 +0200
+
+ Fix expired cert.
+
+diff --git a/tests/chainverify.c b/tests/chainverify.c
+index 745cd7c..0192da2 100644
+--- a/tests/chainverify.c
++++ b/tests/chainverify.c
+@@ -701,8 +701,11 @@ static struct
+ { "rsa-md5 not ok", mayfirst_chain, &mayfirst_chain[1],
+ GNUTLS_VERIFY_ALLOW_SIGN_RSA_MD2,
+ GNUTLS_CERT_INSECURE_ALGORITHM | GNUTLS_CERT_INVALID },
++ { "rsa-md5 not ok2", mayfirst_chain, &mayfirst_chain[1],
++ GNUTLS_VERIFY_ALLOW_SIGN_RSA_MD5,
++ GNUTLS_CERT_EXPIRED | GNUTLS_CERT_INVALID },
+ { "rsa-md5 ok", mayfirst_chain, &mayfirst_chain[1],
+- GNUTLS_VERIFY_ALLOW_SIGN_RSA_MD5, 0 },
++ GNUTLS_VERIFY_DISABLE_TIME_CHECKS | GNUTLS_VERIFY_ALLOW_SIGN_RSA_MD5, 0 },
+ { "v1ca fail", v1ca, &v1ca[2],
+ 0, GNUTLS_CERT_SIGNER_NOT_CA | GNUTLS_CERT_INVALID },
+ { "v1ca expired", v1ca, &v1ca[2],