diff options
author | cvs2svn <cvs2svn> | 2000-10-10 09:15:51 +0000 |
---|---|---|
committer | cvs2svn <cvs2svn> | 2000-10-10 09:15:51 +0000 |
commit | 978ac5339837285a9e2f5970d308f1de8eae2b2c (patch) | |
tree | 2f544ce4b57af98add378bdc75aeae0226de2cc6 | |
parent | 9beaae61ecc3e24b09430db467f350716d1e418e (diff) | |
parent | a440d6636f0a8469f6f498cef409a04ba9884972 (diff) |
This commit was manufactured by cvs2svn to create tag 'OpenSSL_0_9_6-beta2'.OpenSSL_0_9_6-beta2
131 files changed, 333 insertions, 3034 deletions
@@ -2,71 +2,10 @@ OpenSSL CHANGES _______________ - Changes between 0.9.5a and 0.9.6 [24 Sep 2000] - - *) In ssl23_get_client_hello, generate an error message when faced - with an initial SSL 3.0/TLS record that is too small to contain the - first two bytes of the ClientHello message, i.e. client_version. - (Note that this is a pathologic case that probably has never happened - in real life.) The previous approach was to use the version number - from the record header as a substitute; but our protocol choice - should not depend on that one because it is not authenticated - by the Finished messages. - [Bodo Moeller] - - *) More robust randomness gathering functions for Windows. - [Jeffrey Altman <jaltman@columbia.edu>] - - *) For compatibility reasons if the flag X509_V_FLAG_ISSUER_CHECK is - not set then we don't setup the error code for issuer check errors - to avoid possibly overwriting other errors which the callback does - handle. If an application does set the flag then we assume it knows - what it is doing and can handle the new informational codes - appropriately. - [Steve Henson] - - *) Fix for a nasty bug in ASN1_TYPE handling. ASN1_TYPE is used for - a general "ANY" type, as such it should be able to decode anything - including tagged types. However it didn't check the class so it would - wrongly interpret tagged types in the same way as their universal - counterpart and unknown types were just rejected. Changed so that the - tagged and unknown types are handled in the same way as a SEQUENCE: - that is the encoding is stored intact. There is also a new type - "V_ASN1_OTHER" which is used when the class is not universal, in this - case we have no idea what the actual type is so we just lump them all - together. - [Steve Henson] - |