Don't use a SSL3.0 record version in client hello
authorCarlos Alberto Lopez Perez <clopez@igalia.com>
Fri, 6 Mar 2015 07:33:11 +0000 (07:33 +0000)
committerAlberto Garcia <berto@igalia.com>
Fri, 6 Mar 2015 07:33:11 +0000 (07:33 +0000)
===================================================================

Gbp-Pq: Name no-ssl-record-version.patch

Source/WebKit2/NetworkProcess/EntryPoint/unix/NetworkProcessMain.cpp
Source/WebKit2/WebProcess/EntryPoint/unix/WebProcessMain.cpp

index c42baa8e94e16d8e8e97ae256d9a2496f144f958..1acd133c7d18dee468fe4a907997caaa98db9696 100644 (file)
@@ -39,7 +39,7 @@ int main(int argc, char** argv)
     // overwrite this priority string if it's already set by the user.
     // Keep this in sync with WebProcessMain.cpp.
     // https://bugzilla.gnome.org/show_bug.cgi?id=738633
-    setenv("G_TLS_GNUTLS_PRIORITY", "NORMAL:%COMPAT:!VERS-SSL3.0", 0);
+    setenv("G_TLS_GNUTLS_PRIORITY", "NORMAL:%COMPAT:%LATEST_RECORD_VERSION:!VERS-SSL3.0", 0);
 
     return NetworkProcessMainUnix(argc, argv);
 }
index 260620a766911a8162cbb10717aa137cba3a9271..87b45b3c5c0d336ef869cac761d62e1fd58eae59 100644 (file)
@@ -39,7 +39,7 @@ int main(int argc, char** argv)
     // overwrite this priority string if it's already set by the user.
     // Keep this in sync with NetworkProcessMain.cpp.
     // https://bugzilla.gnome.org/show_bug.cgi?id=738633
-    setenv("G_TLS_GNUTLS_PRIORITY", "NORMAL:%COMPAT:!VERS-SSL3.0", 0);
+    setenv("G_TLS_GNUTLS_PRIORITY", "NORMAL:%COMPAT:%LATEST_RECORD_VERSION:!VERS-SSL3.0", 0);
 
     return WebProcessMainUnix(argc, argv);
 }