$NetBSD: patch-ac,v 1.14 2010/07/01 18:50:15 tron Exp $

Fix for CVE-2010-2074 taken from here:

http://www.openwall.com/lists/oss-security/2010/06/14/4

--- fm.h.orig	2007-05-30 05:47:24.000000000 +0100
+++ fm.h	2010-07-01 19:26:27.000000000 +0100
@@ -1119,7 +1119,7 @@
 #endif
 
 #if defined(USE_SSL) && defined(USE_SSL_VERIFY)
-global int ssl_verify_server init(FALSE);
+global int ssl_verify_server init(TRUE);
 global char *ssl_cert_file init(NULL);
 global char *ssl_key_file init(NULL);
 global char *ssl_ca_path init(NULL);
@@ -1128,7 +1128,7 @@
 #endif				/* defined(USE_SSL) &&
 				 * defined(USE_SSL_VERIFY) */
 #ifdef USE_SSL
-global char *ssl_forbid_method init(NULL);
+global char *ssl_forbid_method init("2");
 #endif
 
 global int is_redisplay init(FALSE);
