summaryrefslogtreecommitdiffstats
path: root/lib/libssl/src/ssl (follow)
Commit message (Collapse)AuthorAgeFilesLines
* more fixes from 0.9.7c, ok deraadt, clodermarkus2003-09-302-4/+11
|
* Off-by-ones, from aaron@miod2003-09-221-1/+1
|
* You shall NOT BREAK THE TREEderaadt2003-08-251-3/+0
|
* Setup /dev/crypto early (SSL_library_init) to make sure it's actually donejason2003-08-251-0/+3
| | | | for all applications; ok markus and deraadt
* Remove some double semicolons (hmm, do two semis equal a maxi?).millert2003-08-061-1/+1
| | | | I've skipped the GNU stuff for now. From Patrick Latifi.
* merge 0.9.7b with local changes; crank majors for libssl/libcryptomarkus2003-05-1232-538/+726
|
* import 0.9.7b (without idea and rc5)markus2003-05-111-60/+23
|
* don't cast pointer to integer, use intptr_t stuff off inttypes.h insteadpvalchev2003-05-011-2/+3
| | | | ok millert
* Fix for Klima-Pokorny-Rosa attack on RSA in SSL/TLS, seemarkus2003-03-191-13/+12
| | | | http://marc.theaimsgroup.com/?l=bugtraq&m=104811162730834&w=2
* security fix from openssl 0.9.7a:markus2003-02-191-16/+31
| | | | | | | | In ssl3_get_record (ssl/s3_pkt.c), minimize information leaked via timing by performing a MAC computation even if incorrrect block cipher padding has been found. This is a countermeasure against active attacks where the attacker has to distinguish between bad padding and a MAC verification error. (CAN-2003-0078)
* pull in fix from openssl-0.9.7-stable-SNAP-20020921:markus2002-09-231-16/+5
| | | | | | *) Don't impose a 16-byte length minimum on session IDs in ssl/s3_clnt.c (the SSL 3.0 and TLS 1.0 specifications allow any length up to 32 bytes). [Bodo Moeller]
* merge with openssl-0.9.7-stable-SNAP-20020911,markus2002-09-1415-62/+172
| | | | | new minor for libcrypto (_X509_REQ_print_ex) tested by miod@, pb@
* merge openssl-0.9.7-beta3, tested on vax by miod@markus2002-09-1023-390/+732
|
* merge with 0.9.7-beta1markus2002-09-052-3/+3
|
* execute bourne shell scripts with 'sh' and not with $SHELLmarkus2002-09-041-1/+1
|
* sync these files with openssl-0.9.7-beta1, toomarkus2002-09-031-1/+1
|
* protect <openssl/krb5_asn.h> with OPENSSL_NO_KRB5markus2002-08-301-0/+2
|
* sync with http://www.openssl.org/news/patch_20020730_0_9_7.txtmarkus2002-07-302-4/+15
| | | | | (adds fix for unused kerberos and engine code, and some more assertions, as well as a 64bit integer string fix for conf_mod.c)
* apply patches from OpenSSL Security Advisory [30 July 2002],markus2002-07-3011-1/+55
| | | | http://marc.theaimsgroup.com/?l=openssl-dev&m=102802395104110&w=2
* do not propose IDEA cipher on SSL connection. tested by beckitojun2002-06-073-0/+10
| | | | noticed by Sverre Froyen <sverre@viewmark.com>
* Merge OpenSSL 0.9.7-stable-20020605,beck2002-06-071-5/+36
| | | | correctly autogenerate obj_mac.h
* Merge openssl-0.9.7-stable-SNAP-20020519beck2002-05-211-1/+0
|
* OpenSSL 0.9.7 stable 2002 05 08 mergebeck2002-05-1541-1664/+6483
|
* merge openssl 0.9.6b-enginebeck2001-08-014-8/+54
| | | | | Note that this is a maintenence release, API's appear *not* to have changed. As such, I have only increased the minor number on these libraries
* openssl-engine-0.9.6a mergebeck2001-06-2220-120/+341
|
* CRT and DH+SSL fix from 0.9.6a, ok provos@/deraadt@markus2001-04-221-0/+1
|
* openssl-engine-0.9.6 mergebeck2000-12-1528-433/+588
|
* fix missing closedir() that could allow apacheSSL to leak fd's,beck2000-10-161-0/+1
| | | | from netbsd (taca) credited to TAKANO Yuji <takachan@running-dog.net>
* OpenSSL 0.9.5a mergebeck2000-04-1510-176/+358
|
* OpenSSL 0.9.5 mergebeck2000-03-1937-1249/+2616
| | | | | | *warning* this bumps shared lib minors for libssl and libcrypto from 2.1 to 2.2 if you are using the ssl26 packages for ssh and other things to work you will need to get new ones (see ~beck/libsslsnap/<arch>) on cvs or ~beck/src-patent.tar.gz on cvs
* do not assume shell scripts are +x; dderaadt1999-11-231-1/+1
|
* OpenSSL 0.9.4 mergebeck1999-09-2948-3765/+6388
|
* Import of SSLeay-0.9.0b with RSA and IDEA stubbed + OpenBSD buildryker1998-10-0547-0/+23440
functionality for shared libs. Note that routines such as sslv2_init and friends that use RSA will not work due to lack of RSA in this library. Needs documentation and help from ports for easy upgrade to full functionality where legally possible.