summaryrefslogtreecommitdiffstats
AgeCommit message (Collapse)Author
2012-01-11doc/apps: formatting fixes [from HEAD].Andy Polyakov
PR: 2683 Submitted by: Annie Yousar
2012-01-11speed.c: typo in pkey_print_message [from HEAD].Andy Polyakov
PR: 2681 Submitted by: Annie Yousar
2012-01-11ecdsa.pod: typo.Andy Polyakov
PR: 2678 Submitted by: Annie Yousar
2012-01-11asn1/t_x509.c: fix serial number print, harmonize with a_int.c [from HEAD].Andy Polyakov
PR: 2675 Submitted by: Annie Yousar
2012-01-11aes-sparcv9.pl: clean up regexp [from HEAD].Andy Polyakov
PR: 2685
2012-01-05PR: 2652Dr. Stephen Henson
Submitted by: Arpadffy Zoltan <Zoltan.Arpadffy@scientificgames.se> OpenVMS fixes.
2012-01-05Update for 0.9.8s and 1.0.0f.Bodo Möller
(While the 1.0.0f CHANGES entry on VOS PRNG seeding was missing in the 1.0.1 branch, the actual code is here already.)
2012-01-05Fix for builds without DTLS support.Bodo Möller
Submitted by: Brian Carlstrom
2012-01-05PR: 2671Dr. Stephen Henson
Submitted by: steve Update maximum message size for certifiate verify messages to support 4096 bit RSA keys again as TLS v1.2 messages is two bytes longer.
2012-01-05Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>Dr. Stephen Henson
Reviewed by: steve Send fatal alert if heartbeat extension has an illegal value.
2012-01-05disable heartbeats if tlsext disabledDr. Stephen Henson
2012-01-04update CHANGESDr. Stephen Henson
2012-01-04Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>, Michael Tuexen ↵Dr. Stephen Henson
<tuexen@fh-muenster.de> Reviewed by: steve Fix for DTLS plaintext recovery attack discovered by Nadhem Alfardan and Kenny Paterson.
2012-01-04Clear bytes used for block padding of SSL 3.0 records. (CVE-2011-4576)Dr. Stephen Henson
2012-01-04fix CHANGESDr. Stephen Henson
2012-01-04Only allow one SGC handshake restart for SSL/TLS. (CVE-2011-4619)Dr. Stephen Henson
2012-01-04Check GOST parameters are not NULL (CVE-2012-0027)Dr. Stephen Henson
2012-01-04Prevent malformed RFC3779 data triggering an assertion failure (CVE-2011-4577)Dr. Stephen Henson
2012-01-04fix warningsDr. Stephen Henson
2012-01-04Submitted by: Adam Langley <agl@chromium.org>Dr. Stephen Henson
Reviewed by: steve Fix memory leaks.
2012-01-03only send heartbeat extension from server if client sent oneDr. Stephen Henson
2012-01-03prepare for 1.0.1-beta1OpenSSL_1_0_1-beta1Dr. Stephen Henson
2012-01-02OpenSSL 1.0.1 is now in beta.Dr. Stephen Henson
2012-01-02incomplete provisional OAEP CMS decrypt supportDr. Stephen Henson
2012-01-02make updateDr. Stephen Henson
2012-01-02update NEWSDr. Stephen Henson
2011-12-31recognise HEARTBEATS in mkdef.pl scriptDr. Stephen Henson
2011-12-31update CHANGESDr. Stephen Henson
2011-12-31PR: 2658Dr. Stephen Henson
Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de> Reviewed by: steve Support for TLS/DTLS heartbeats.
2011-12-27make error code checking strictDr. Stephen Henson
2011-12-27make updateDr. Stephen Henson
2011-12-27fix error codeDr. Stephen Henson
2011-12-27fix deprecated statementDr. Stephen Henson
2011-12-27update default depflagsDr. Stephen Henson
2011-12-27PR: 1794Dr. Stephen Henson
Submitted by: Peter Sylvester <peter.sylvester@edelweb.fr> Reviewed by: steve - remove some unncessary SSL_err and permit an srp user callback to allow a worker to obtain a user verifier. - cleanup and comments in s_server and demonstration for asynchronous srp user lookup
2011-12-26PR: 2326Dr. Stephen Henson
Submitted by: Tianjie Mao <tjmao@tjmao.net> Reviewed by: steve Fix incorrect comma expressions and goto f_err as alert has been set.
2011-12-25recognise no-sctpDr. Stephen Henson
2011-12-25update ordinalsDr. Stephen Henson
2011-12-25recognise SCTP in mkdef.pl scriptDr. Stephen Henson
2011-12-25PR: 2535Dr. Stephen Henson
Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de> Reviewed by: steve Add SCTP support for DTLS (RFC 6083).
2011-12-23typoDr. Stephen Henson
2011-12-23delete unimplemented function from header file, update ordinalsDr. Stephen Henson
2011-12-22update ordinalsDr. Stephen Henson
2011-12-22remove prototype for deleted SRP functionDr. Stephen Henson
2011-12-22New ctrl values to clear or retrieve extra chain certs from an SSL_CTX.Dr. Stephen Henson
New function to retrieve compression method from SSL_SESSION structure. Delete SSL_SESSION_get_id_len and SSL_SESSION_get0_id functions as they duplicate functionality of SSL_SESSION_get_id. Note: these functions have never appeared in any release version of OpenSSL.
2011-12-20Fix DTLS.Ben Laurie
2011-12-19PR: 2563Dr. Stephen Henson
Submitted by: Paul Green <Paul.Green@stratus.com> Reviewed by: steve Improved PRNG seeding for VOS.
2011-12-19update CHANGES.Andy Polyakov
2011-12-19update CHANGESDr. Stephen Henson
2011-12-19apps/speed.c: fix typo in last commit.Andy Polyakov