Revision 76f9351...

Go back to digest for 6th February 2011

Security in KDE Base

David Faure committed changes in [kdelibs] kio/kio/tcpslavebase.cpp:

Harden SSL verification against poisoned DNS attacks
... in the case of certificates that are issued against an IP address rather than a hostname.

Patch by Tomas Hoger / Red Hat Security Response Team, reviewed by Jeff Mitchell and Richard Moore.

File Changes

Modified 1 files
  • kio/kio/tcpslavebase.cpp
1 files changed in total