<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="9402e64690b1a9a7f760ca687f37f7aa"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="sledp3-openssl-7174"
    timestamp="1285627227"
    engine="1.0">
  <yum:name>sledp3-openssl</yum:name>
  <summary lang="en">Security update for OpenSSL</summary>
  <description lang="en">
Specially crafted responses from SSL servers could cause a double-free bug 
in openssl's client implementation. Malicious servers could exploit that to 
crash programs use openssl for the SSL connection (CVE-2010-2939). This has 
been fixed.

Security Issue reference:

    * CVE-2010-2939
      &lt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2939&gt;

</description>
  <yum:version ver="7174" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="openssl" epoch="0" ver="0.9.8a" rel="18.43.1" flags="EQ"/>
    <rpm:entry kind="atom" name="openssl-devel" epoch="0" ver="0.9.8a" rel="18.43.1" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>openssl</name>
      <arch>i586</arch>
      <version epoch="0" ver="0.9.8a" rel="18.43.1"/>
      <checksum type="sha" pkgid="YES">91ac7eb281b509c80276af241f202258eea9db41</checksum>
      <time file="1285627254" build="1285627227"/>
      <size package="1170824" installed="2677698" archive="2697484"/>
      <location xml:base="media://#1" href="suse/i586/openssl-0.9.8a-18.43.1.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="openssl" epoch="0" ver="0.9.8a" rel="18.43.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="openssl"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>openssl-devel</name>
      <arch>i586</arch>
      <version epoch="0" ver="0.9.8a" rel="18.43.1"/>
      <checksum type="sha" pkgid="YES">c289788b293ebd4e421c61e7568ec08bc1df3785</checksum>
      <time file="1285627254" build="1285627227"/>
      <size package="908818" installed="3867063" archive="3878196"/>
      <location xml:base="media://#1" href="suse/i586/openssl-devel-0.9.8a-18.43.1.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="openssl-devel" epoch="0" ver="0.9.8a" rel="18.43.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="openssl-devel"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
