summaryrefslogtreecommitdiffstats
path: root/ssl
AgeCommit message (Expand)Author
2023-09-19Copyright year updatesRichard Levitte
2023-09-18Enhance code safety and readability in SSL_get_shared_ciphers()Sumitra Sharma
2023-08-04Resolves some magic values that has a hello_retry_request enum type.Frederik Wedel-Heinen
2023-08-02A null pointer dereference occurs when memory allocation failsyangyangtiantianlonglong
2023-08-01Copyright year updatesMatt Caswell
2023-07-17Fix ssl3_do_write() to correctly handle retriesMatt Caswell
2023-06-29Fix supported_groups handing in TLSv1.2Matt Caswell
2023-06-23Don't ask for an invalid group in an HRRMatt Caswell
2023-05-30Update copyright yearTomas Mraz
2023-05-12Clear ownership when duplicating sessionsWatson Ladd
2023-04-25Fix regression of no-posix-io buildsTomas Mraz
2023-03-31Handle app data records from the next epochMatt Caswell
2023-03-24tls1_set_groups_list: freeing *pext before overwritingPeter Kaestle
2023-03-15Remove spurious error queue entries on early dataMatt Caswell
2023-02-24Do not have more data in a pipeline than the split_send_fragmentMatt Caswell
2023-02-24Fix read pipeliningMatt Caswell
2023-02-24Pipeline output/input buf arrays must live until the EVP_Cipher is calledMatt Caswell
2023-02-23Skip subdirectories in SSL_add_dir_cert_subjects_to_stack()olszomal
2023-02-07Update copyright yearRichard Levitte
2023-01-24Ensure our buffer allocation allows for the Explicit IVMatt Caswell
2023-01-04Avoid possible divide by zeroTomas Mraz
2022-12-13Make error reason for disallowed legacy sigalg more specificTomas Mraz
2022-12-05Fix the check of BIO_set_write_buffer_size and BIO_set_read_buffer_sizePeiwei Hu
2022-11-14Use the same encryption growth macro consistentlyMatt Caswell
2022-11-02Fix the ceiling on how much encryption growth we can haveMatt Caswell
2022-10-26ssl_cipher_process_rulestr: don't read outside rule_str bufferTodd C. Miller
2022-10-21stack: Do not add error if pop/shift/value accesses outside of the stackTomas Mraz
2022-10-19Ensure that the key share group is allowed for our protocol versionMatt Caswell
2022-10-11Update copyright yearMatt Caswell
2022-09-28Test TLS extension orderingTodd Short
2022-09-27ssl_log_secret call in tls13_key_updatevisbjn
2022-09-27If a ticket key callback returns 0 in TLSv1.3 don't send a ticketMatt Caswell
2022-09-22Correctly handle a retransmitted ClientHelloMatt Caswell
2022-09-16stack.c: add missing direct error reporting and improve coding styleDr. David von Oheimb
2022-09-06Coverity 1513478: negative returnPauli
2022-08-26Convert serverinfo in SSL_CTX_use_serverinfo() to v2.Daniel Fiala
2022-08-22Coverity 1508506: misuse of time_tPauli
2022-08-19Coverity 1508534 & 1508540: misuses of time_tPauli
2022-08-17Fix SSL_pending() and SSL_has_pending() with DTLSMatt Caswell
2022-08-02Check that IV length is not less than zeroDmitry Belyavskiy
2022-08-01Free up space in the session cache before adding.Todd Short
2022-07-13Check for EVP_MD being NULL inside ssl.slontis
2022-07-08ssl/tls_srp.c: Add check for BN_dupJiasheng Jiang
2022-06-22Improve diagnostics on setting groupsDmitry Belyavskiy
2022-06-21Update copyright yearMatt Caswell
2022-06-10add_provider_groups: Clean up algorithm pointer on failureTomas Mraz
2022-06-03Fix strict client chain check with TLS-1.3Tomas Mraz
2022-06-02Fix the erroneous checks of EVP_PKEY_CTX_set_group_namePeiwei Hu
2022-05-27The -no_legacy_server_connect option applies to clientTomas Mraz
2022-05-27Actually implement UnsafeLegacyServerConnect as documentedTomas Mraz