Bug 263434

Summary: openssl: Unpatched bugs in /crypto/openssl/apps
Product: Base System Reporter: xiaohuizhang <xiaohuizhang>
Component: binAssignee: Jung-uk Kim <jkim>
Status: Closed Not A Bug    
Severity: Affects Only Me CC: chris, gordon, philip, secteam
Priority: --- Keywords: needs-qa, security
Version: CURRENTFlags: koobs: maintainer-feedback? (secteam)
koobs: mfc-stable13?
koobs: mfc-stable12?
Hardware: Any   
OS: Any   
See Also: https://github.com/openssl/openssl/pull/18069

Description xiaohuizhang 2022-04-20 06:50:28 UTC
There are several important patches in the newest OpenSSL, which involve the code introduced by FreeBSD (such as /crypto/openssl/apps/apps.c and /crypto/openssl/apps/ca.c). They have not been patched in FreeBSD yet. The PR link is as follows:

https://github.com/openssl/openssl/pull/18069
Comment 1 Gordon Tetlow freebsd_committer freebsd_triage 2022-04-21 15:32:00 UTC
Over to jkim for review. I'm unsure we have anything to do here.
Comment 2 Jung-uk Kim freebsd_committer freebsd_triage 2022-04-21 16:13:17 UTC
(In reply to Gordon Tetlow from comment #1)
We do not merge individual patches from upstream unless it is critical and I don't think it is critical.  IOW, it will be patched as a part of upstream import.