File _patchinfo of Package patchinfo.3133
<patchinfo> <issue id="CVE-2014-3566" tracker="cve" /> <category>security</category> <rating>moderate</rating> <packager>AndreasStieger</packager> <description>libserf was updated to disable SSLv2 and SSLv3. libserf was updated to version 1.3.8 on openSUSE 13.1 and 13.2. This release also fixes a problem with handling very large gzip-encoded HTTP responses. For openSUSE 12.3 libserf 1.1.1 was patched to disable SSLv2 and SSLv3. </description> <summary>libserf: Disable SSLv2 and SSLv3.</summary> </patchinfo>