summaryrefslogtreecommitdiffstats
path: root/CHANGES
AgeCommit message (Expand)Author
2014-06-05Prepare for 1.0.1h releaseOpenSSL_1_0_1hDr. Stephen Henson
2014-06-05Update CHANGES and NEWSDr. Stephen Henson
2014-04-26Fix version documentation.mancha
2014-04-24Fix eckey_priv_encode()mancha
2014-04-22Fix double frees.Ben Laurie
2014-04-07Prepare for 1.0.1h-devDr. Stephen Henson
2014-04-07Prepare for 1.0.1g releaseOpenSSL_1_0_1gDr. Stephen Henson
2014-04-07Add heartbeat extension bounds check.Dr. Stephen Henson
2014-04-05Set TLS padding extension value.Dr. Stephen Henson
2014-03-12Fix for CVE-2014-0076Dr. Stephen Henson
2014-02-05Backport TLS padding extension from master.Dr. Stephen Henson
2014-01-06Prepare for 1.0.1g-devDr. Stephen Henson
2014-01-06Prepare for 1.0.1f releaseOpenSSL_1_0_1fDr. Stephen Henson
2014-01-06Fix for TLS record tampering bug CVE-2013-4353Dr. Stephen Henson
2013-12-20Fix DTLS retransmission from previous session.Dr. Stephen Henson
2013-09-16Update CHANGES.Rob Stradling
2013-09-16Sync CHANGES and NEWS files.Bodo Moeller
2013-02-11update CHANGESDr. Stephen Henson
2013-02-11prepare for next versionDr. Stephen Henson
2013-02-11prepare for releaseDr. Stephen Henson
2013-02-06prepare for next versionDr. Stephen Henson
2013-02-04typoOpenSSL_1_0_1dDr. Stephen Henson
2013-02-04typoDr. Stephen Henson
2013-02-04Add CHANGES entries.Dr. Stephen Henson
2013-01-29Don't try and verify signatures if key is NULL (CVE-2013-0166)Dr. Stephen Henson
2012-12-13Make verify return errors.Ben Laurie
2012-09-17Call OCSP Stapling callback after ciphersuite has been chosen, so theBen Laurie
2012-05-11PR: 2813Dr. Stephen Henson
2012-05-11PR: 2811Dr. Stephen Henson
2012-05-10prepare for next versionDr. Stephen Henson
2012-05-10prepare for 1.0.1c releaseOpenSSL_1_0_1cDr. Stephen Henson
2012-05-10Sanity check record length before skipping explicit IV in TLS 1.2, 1.1 andDr. Stephen Henson
2012-05-10Reported by: Solar Designer of OpenwallDr. Stephen Henson
2012-04-26Don't try to use unvalidated composite ciphers in FIPS modeDr. Stephen Henson
2012-04-26prepare for next versionDr. Stephen Henson
2012-04-26prepare for 1.0.1b releaseDr. Stephen Henson
2012-04-26CHANGES: clarify.Andy Polyakov
2012-04-26CHANGEs: fix typos and clarify.Andy Polyakov
2012-04-25Change value of SSL_OP_NO_TLSv1_1 to avoid clash with SSL_OP_ALL andDr. Stephen Henson
2012-04-25s23_clnt.c: ensure interoperability by maitaining client "version capability"Andy Polyakov
2012-04-19update for next versionDr. Stephen Henson
2012-04-19prepare for 1.0.1a releaseOpenSSL_1_0_1aDr. Stephen Henson
2012-04-19Check for potentially exploitable overflows in asn1_d2i_read_bioDr. Stephen Henson
2012-04-17Disable SHA-2 ciphersuites in < TLS 1.2 connections.Bodo Möller
2012-04-17Additional workaround for PR#2771Dr. Stephen Henson
2012-03-31CHANGES: mention vpaes fix and harmonize with 1.0.0.Andy Polyakov
2012-03-22update version to 1.0.1a-devDr. Stephen Henson
2012-03-14prepare for 1.0.1 releaseDr. Stephen Henson
2012-02-23correct CHANGESOpenSSL_1_0_1-beta3Dr. Stephen Henson
2012-02-16Fix bug in CVE-2011-4619: check we have really received a client helloDr. Stephen Henson