[Midnightbsd-cvs] src: lib/dns: bind security update with DNSSEC

laffer1 at midnightbsd.org laffer1 at midnightbsd.org
Thu Jan 15 11:20:39 EST 2009


Log Message:
-----------
bind security update with DNSSEC

Modified Files:
--------------
    src/contrib/bind9/lib/dns:
        openssldsa_link.c (r1.1.1.4 -> r1.2)
        opensslrsa_link.c (r1.1.1.4 -> r1.2)

-------------- next part --------------
Index: opensslrsa_link.c
===================================================================
RCS file: /home/cvs/src/contrib/bind9/lib/dns/opensslrsa_link.c,v
retrieving revision 1.1.1.4
retrieving revision 1.2
diff -L contrib/bind9/lib/dns/opensslrsa_link.c -L contrib/bind9/lib/dns/opensslrsa_link.c -u -r1.1.1.4 -r1.2
--- contrib/bind9/lib/dns/opensslrsa_link.c
+++ contrib/bind9/lib/dns/opensslrsa_link.c
@@ -246,7 +246,7 @@
 
 	status = RSA_verify(type, digest, digestlen, sig->base,
 			    RSA_size(rsa), rsa);
-	if (status == 0)
+	if (status != 1)
 		return (dst__openssl_toresult(DST_R_VERIFYFAILURE));
 
 	return (ISC_R_SUCCESS);
Index: openssldsa_link.c
===================================================================
RCS file: /home/cvs/src/contrib/bind9/lib/dns/openssldsa_link.c,v
retrieving revision 1.1.1.4
retrieving revision 1.2
diff -L contrib/bind9/lib/dns/openssldsa_link.c -L contrib/bind9/lib/dns/openssldsa_link.c -u -r1.1.1.4 -r1.2
--- contrib/bind9/lib/dns/openssldsa_link.c
+++ contrib/bind9/lib/dns/openssldsa_link.c
@@ -133,7 +133,7 @@
 
 	status = DSA_do_verify(digest, ISC_SHA1_DIGESTLENGTH, dsasig, dsa);
 	DSA_SIG_free(dsasig);
-	if (status == 0)
+	if (status != 1)
 		return (dst__openssl_toresult(DST_R_VERIFYFAILURE));
 
 	return (ISC_R_SUCCESS);


More information about the Midnightbsd-cvs mailing list