[package] openssl: update to v1.0.1a (CVE-2012-2110)
[openwrt/svn-archive/archive.git] / package / openssl / patches / 210-no-OPENSSL_ia32cap_P.patch
diff --git a/package/openssl/patches/210-no-OPENSSL_ia32cap_P.patch b/package/openssl/patches/210-no-OPENSSL_ia32cap_P.patch
new file mode 100644 (file)
index 0000000..6ddf009
--- /dev/null
@@ -0,0 +1,12 @@
+--- a/crypto/evp/e_rc4_hmac_md5.c
++++ b/crypto/evp/e_rc4_hmac_md5.c
+@@ -289,8 +289,6 @@ static EVP_CIPHER r4_hmac_md5_cipher=
+ const EVP_CIPHER *EVP_rc4_hmac_md5(void)
+       {
+-      extern unsigned int OPENSSL_ia32cap_P[];
+-      /* RC4_CHAR flag ------------vvvvv */
+-      return(OPENSSL_ia32cap_P[0]&(1<<20) ? NULL : &r4_hmac_md5_cipher);
++      return(&r4_hmac_md5_cipher);
+       }
+ #endif