summaryrefslogtreecommitdiffstats
path: root/NEWS
diff options
context:
space:
mode:
authorDr. Stephen Henson <steve@openssl.org>2014-01-07 15:26:19 +0000
committerDr. Stephen Henson <steve@openssl.org>2014-01-07 15:41:04 +0000
commita05a2c67efd181261c92e8b65f44c48834221d59 (patch)
treecc613abe8fe7ad15345bdb3d45e9fca9238df5d0 /NEWS
parente34140620ed8ce1dfc7f13d3e3b39ade1cb53552 (diff)
Update NEWS.
Diffstat (limited to 'NEWS')
-rw-r--r--NEWS9
1 files changed, 8 insertions, 1 deletions
diff --git a/NEWS b/NEWS
index 84654d8aaa..cad53a5ddd 100644
--- a/NEWS
+++ b/NEWS
@@ -5,7 +5,7 @@
This file gives a brief overview of the major changes between each OpenSSL
release. For more details please read the CHANGES file.
- Major changes between OpenSSL 1.0.1e and OpenSSL 1.0.2 [under development]:
+ Major changes between OpenSSL 1.0.1f and OpenSSL 1.0.2 [under development]:
o Support for DTLS 1.2
o TLS automatic EC curve selection.
@@ -15,6 +15,13 @@
o ALPN support.
o CMS support for RSA-PSS, RSA-OAEP, ECDH and X9.42 DH.
+ Major changes between OpenSSL 1.0.1e and OpenSSL 1.0.1f [6 Jan 2014]
+
+ o Don't include gmt_unix_time in TLS server and client random values
+ o Fix for TLS record tampering bug CVE-2013-4353
+ o Fix for TLS version checking bug CVE-2013-6449
+ o Fix for DTLS retransmission bug CVE-2013-6450
+
Major changes between OpenSSL 1.0.1d and OpenSSL 1.0.1e [11 Feb 2013]:
o Corrected fix for CVE-2013-0169