<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="ee82f2198a82d11b239bd3321dd51483"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="compat-openssl097g-5054"
    timestamp="1204224502"
    engine="1.0">
  <yum:name>compat-openssl097g</yum:name>
  <summary lang="en">compat-openssl097g: Fixed buffer overflow in SSL_get_shared_ciphers</summary>
  <summary lang="de">compat-openssl097g: Behebt Pufferüberlauf in SSL_get_shared_ciphers</summary>
  <description lang="en">This update of openssl fixes a off-by-one buffer overflow
in function SSL_get_shared_ciphers(). This vulnerability
potentially allows remote code execution; depending on
memory layout of the process. (CVE-2007-5135)

We released updates for openssl already, but an update for
the compat 0.9.7g openssl libraries was missing and is
provided with this patch.
</description>
  <description lang="de">Dieses Openssl update behebt einen off-by-one
Pufferüberlauf in der Funktion SSL_get_shared_ciphers().
Dieses Problem erlaubt potentielles Ausführen von
Schadcode, abhängig vom Speicherlayout des Prozesses.
(CVE-2007-5135)

Wir haben Updates fuer openssl selber schon vor einiger
Zeit released, Updates für die compat Bibliotheken von
0.9.7g openssl fehlten aber noch.
</description>
  <yum:version ver="5054" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="compat-openssl097g" epoch="0" ver="0.9.7g" rel="75.2" flags="EQ"/>
    <rpm:entry kind="atom" name="compat-openssl097g-32bit" epoch="0" ver="0.9.7g" rel="75.2" flags="EQ"/>
    <rpm:entry kind="atom" name="compat-openssl097g-64bit" epoch="0" ver="0.9.7g" rel="75.2" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>compat-openssl097g</name>
      <arch>i586</arch>
      <version epoch="0" ver="0.9.7g" rel="75.2"/>
      <checksum type="sha" pkgid="YES">7ee294c00bd0540659be31beda7f8b1c61fcd2ef</checksum>
      <time file="1204559347" build="1204224502"/>
      <size package="701331" installed="1689017" archive="1691756"/>
      <location href="rpm/i586/compat-openssl097g-0.9.7g-75.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="compat-openssl097g" epoch="0" ver="0.9.7g" rel="75.2" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="compat-openssl097g"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <deltarpm>
          <location href="rpm/i586/compat-openssl097g-0.9.7g-75_75.2.i586.delta.rpm"/>
          <checksum type="sha">6277b03478332cb36edf6f16d33658c99624afeb</checksum>
          <time file="1204560082" build="1204224502"/>
          <size package="183745" archive="0"/>
          <base-version epoch="0" ver="0.9.7g" rel="75" md5sum="23bad7da8d1a087518c5a4acd344d57f" buildtime="1190418315" sequence_info="compat-openssl097g-0.9.7g-75-58fef1b756524bf868a61f917869e9e630"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>compat-openssl097g</name>
      <arch>ppc</arch>
      <version epoch="0" ver="0.9.7g" rel="75.2"/>
      <checksum type="sha" pkgid="YES">13d6c80bf0acfc885fe696099444be56787e40dc</checksum>
      <time file="1204559094" build="1204224252"/>
      <size package="783146" installed="1903377" archive="1906116"/>
      <location href="rpm/ppc/compat-openssl097g-0.9.7g-75.2.ppc.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="compat-openssl097g" epoch="0" ver="0.9.7g" rel="75.2" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="compat-openssl097g"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <deltarpm>
          <location href="rpm/ppc/compat-openssl097g-0.9.7g-75_75.2.ppc.delta.rpm"/>
          <checksum type="sha">d26f04fd38b63928a9e059f4601fb35403ada972</checksum>
          <time file="1204560090" build="1204224252"/>
          <size package="216974" archive="0"/>
          <base-version epoch="0" ver="0.9.7g" rel="75" md5sum="a4c0cebc643abb7589d4dcc281649a4d" buildtime="1190457403" sequence_info="compat-openssl097g-0.9.7g-75-087e3c03d79490898966b4cf5b950c8b30"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>compat-openssl097g</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="0.9.7g" rel="75.2"/>
      <checksum type="sha" pkgid="YES">31666a83ae757562198d1650c65643933fc61d3d</checksum>
      <time file="1204559031" build="1204223550"/>
      <size package="798566" installed="1981593" archive="1984340"/>
      <location href="rpm/x86_64/compat-openssl097g-0.9.7g-75.2.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="compat-openssl097g" epoch="0" ver="0.9.7g" rel="75.2" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="compat-openssl097g"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <deltarpm>
          <location href="rpm/x86_64/compat-openssl097g-0.9.7g-75_75.2.x86_64.delta.rpm"/>
          <checksum type="sha">ab4d6e8deab86b05927313fab00b70ae2793f7cb</checksum>
          <time file="1204560093" build="1204223550"/>
          <size package="179996" archive="0"/>
          <base-version epoch="0" ver="0.9.7g" rel="75" md5sum="3f42008065ca3bfb758300e508a219f9" buildtime="1190405366" sequence_info="compat-openssl097g-0.9.7g-75-3600518da6cb786c92fe1a3b04261a5730"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>compat-openssl097g-32bit</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="0.9.7g" rel="75.2"/>
      <checksum type="sha" pkgid="YES">3d4ea4ca32af02b3f6bb86e18a1b22bd1d254713</checksum>
      <time file="1204559348" build="1204224575"/>
      <size package="586053" installed="1283224" archive="1283624"/>
      <location href="rpm/x86_64/compat-openssl097g-32bit-0.9.7g-75.2.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="compat-openssl097g-32bit" epoch="0" ver="0.9.7g" rel="75.2" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="compat-openssl097g-32bit"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <deltarpm>
          <location href="rpm/x86_64/compat-openssl097g-32bit-0.9.7g-75_75.2.x86_64.delta.rpm"/>
          <checksum type="sha">6a9c3b2189e5b4006a117a05f3b9bc71b805ceb3</checksum>
          <time file="1204560095" build="1204224575"/>
          <size package="65808" archive="0"/>
          <base-version epoch="0" ver="0.9.7g" rel="75" md5sum="d61430a3fa016a845f9984538a967a2b" buildtime="1190418340" sequence_info="compat-openssl097g-32bit-0.9.7g-75-3851a82dff77afc1031b0a905aa4ad8720"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>compat-openssl097g-64bit</name>
      <arch>ppc</arch>
      <version epoch="0" ver="0.9.7g" rel="75.2"/>
      <checksum type="sha" pkgid="YES">5614a94ab52985133d0f91761bc6b75b24cf400c</checksum>
      <time file="1204559161" build="1204224448"/>
      <size package="746520" installed="2045272" archive="2045680"/>
      <location href="rpm/ppc/compat-openssl097g-64bit-0.9.7g-75.2.ppc.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="compat-openssl097g-64bit" epoch="0" ver="0.9.7g" rel="75.2" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="compat-openssl097g-64bit"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
