Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | another cert that makes godaddy.com and launchpad.net (among others) happy. | 2009-10-12 | 1 | -0/+51 | |
| | | | | | found by Guillaume Protet (guillaume dot protet at mortheres dot info) while testing bzr update. deraadt@ ok | ||||
* | remove expired certificates and add startcom ltd. | 2009-08-08 | 1 | -839/+148 | |
| | | | | beck@ ok | ||||
* | pull string for memcpy; ok hshoexer@ | 2009-08-07 | 1 | -1/+2 | |
| | |||||
* | add ipsCA as a valid authority. | 2009-05-25 | 1 | -0/+51 | |
| | | | | ok beck@ | ||||
* | resync libssl/libcrypto pod documentation - quite a few more pages and | 2009-04-10 | 1 | -27/+242 | |
| | | | | MLINKS; feedback and ok jmc@ | ||||
* | crankus majoris | 2009-04-06 | 3 | -3/+3 | |
| | |||||
* | resolve conflicts | 2009-04-06 | 52 | -176/+308 | |
| | |||||
* | import of OpenSSL 0.9.8k | 2009-04-06 | 41 | -128/+18137 | |
| | |||||
* | missing ssl_sock_init() call in init_client() (used by | 2009-01-30 | 1 | -3/+10 | |
| | | | | "openssl s_client"), fix an unlikely memory leak | ||||
* | remove some gratuitous changes that do nothing other than inrease | 2009-01-30 | 1 | -2/+1 | |
| | | | | the size of the diff against openssl mainline | ||||
* | convert a strdup (into a purpose-allocated buffer) in libcrypto to a | 2009-01-12 | 1 | -2/+3 | |
| | | | | memcpy to avoid linker deprecation warnings; pointed out by dkrause@ | ||||
* | openssl-0.9.8j enables RFC3546 TLS extensions by default (e.g. the very | 2009-01-09 | 13 | -39/+0 | |
| | | | | | useful "server name indication" that allows multihomed TLS server), so remove the #define to disable it here | ||||
* | adjust Makefile and crank major for openssl-0.9.8j | 2009-01-09 | 17 | -16/+56 | |
| | |||||
* | resolve conflicts | 2009-01-09 | 293 | -4796/+6975 | |
| | |||||
* | import openssl-0.9.8j | 2009-01-09 | 182 | -3583/+18902 | |
| | |||||
* | Add a missing MLINK for BIO_new_socket. | 2009-01-08 | 1 | -1/+2 | |
| | | | | Noticed by blambert@. Ok jmc@. | ||||
* | update to openssl-0.9.8i; tested by several, especially krw@ | 2009-01-05 | 136 | -2902/+4741 | |
| | |||||
* | fix some cause of bad TEXTREL on i386 and amd64 | 2008-09-19 | 5 | -14/+64 | |
| | | | | | | | - global function calls in .init sections (diff makes them via PLT) - calls to global functions in aes-586.S (made static or local) - global variable accesses in rc4-x86_64.S (now made via GOT) from djm@large; ok miod@ | ||||
* | use one call to arc4random_buf() instead of lots of arc4random() | 2008-09-10 | 1 | -8/+2 | |
| | |||||
* | turn off CAST assembler code (i.e. use C implementation) as it has bad | 2008-09-08 | 1 | -3/+3 | |
| | | | | | relocations that lead to libcrypto.so being marked TEXTREL; linker-fu from drahn@ "go ahead" deraadt@ | ||||
* | sparc now requires this bloated library to be -fPIC | 2008-09-07 | 1 | -1/+5 | |
| | |||||
* | Fix merge botch. | 2008-09-07 | 1 | -3/+0 | |
| | | | | ok miod@ | ||||
* | remove duplicate definition of OPENSSL_DSA_MAX_MODULUS_BITS spotted | 2008-09-06 | 1 | -2/+0 | |
| | | | | by dtucker@ | ||||
* | remerge local tweaks, update per-arch configuration headers, update | 2008-09-06 | 26 | -98/+875 | |
| | | | | Makefiles, crank shlib_version | ||||
* | resolve conflicts | 2008-09-06 | 660 | -15376/+43371 | |
| | |||||
* | import of OpenSSL 0.9.8h | 2008-09-06 | 388 | -9448/+92829 | |
| | |||||
* | Install man pages for the BIO_* libcrypto functions, but not bio.3 | 2008-07-28 | 1 | -1/+126 | |
| | | | | | | as the page doesn't directly describe any functions. ok deraadt@ | ||||
* | i have to crank this for a ridiculous reason, to save me about 4 hours of work | 2008-07-25 | 1 | -1/+1 | |
| | |||||
* | remove duplicates; remove des_random_key; remove unused; sort MLINKS; ok jmc@ | 2008-05-07 | 1 | -113/+8 | |
| | |||||
* | fix memory leak (in one case of unaligned buffers); from Markus Kvetter | 2008-02-26 | 1 | -2/+3 | |
| | | | | ok markus | ||||
* | Replace use of strcpy(3) and other pointer goo in | 2007-10-10 | 2 | -30/+24 | |
| | | | | | | SSL_get_shared_ciphers() with strlcat(3). ok deraadt@ markus@ | ||||
* | Fix off-by-one buffer overflow in SSL_get_shared_ciphers(). | 2007-09-27 | 2 | -22/+22 | |
| | | | | | | From OpenSSL_0_9_8-stable branch. ok djm@ | ||||
* | Proper use of fseek/fseeko macros. | 2007-09-10 | 1 | -1/+1 | |
| | | | | OK joris@, otto@ | ||||
* | http://openssl.org/news/patch-CVE-2007-3108.txt; ok pval, deraadt | 2007-08-21 | 1 | -13/+65 | |
| | |||||
* | Correctly NUL terminate the message buffer that is used with the | 2007-08-06 | 1 | -4/+24 | |
| | | | | | -starttls option. Without this openssl s_client -starttls crashed with malloc.conf -> J. OK deraadt@, hshoexer@ | ||||
* | More comment typos from Diego Casati. Including winners like funtion, allmost, | 2007-05-26 | 1 | -1/+1 | |
| | | | | oustside, seqencer, toghether, nessissary, etc. | ||||
* | Add proper checks against fgets failure. From Charles Longeau. | 2007-04-06 | 1 | -1/+2 | |
| | | | | OK moritz@, millert@, and jaredy@. | ||||
* | Add the cRLSign bit by default, so that certs generated using this file | 2007-03-28 | 1 | -1/+1 | |
| | | | | | | will be able to sign CRLs. OK reyk, hshoexer, millert | ||||
* | remove some bogus *p tests from charles longeau | 2007-03-20 | 3 | -5/+5 | |
| | | | | ok deraadt millert | ||||
* | remove two expired certificates, diff from <Christian_Rusch@genua.de> | 2007-02-17 | 1 | -97/+0 | |
| | | | | ok jakob@ | ||||
* | Fix format string misuse in kssl_err_set(), which is not | 2007-01-03 | 1 | -1/+1 | |
| | | | | | | called with user-supplied strings at the moment. ok markus@ | ||||
* | add openssl PEM_* manpages; ok deraadt, hshoexer, djm | 2006-11-09 | 1 | -6/+73 | |
| | |||||
* | architecture sh (landisk) is little endian. | 2006-10-14 | 1 | -2/+2 | |
| | |||||
* | Initial config for sh, copied from arm. | 2006-10-11 | 1 | -0/+180 | |
| | | | | ok miod@ drahn@ | ||||
* | openssl security fixes, diff from markus@, ok & "commit it" djm@ | 2006-10-04 | 13 | -3/+85 | |
| | | | | http://www.openssl.org/news/secadv_20060928.txt for more | ||||
* | Use S_IS* macros insted of masking with S_IF* flags. The latter may | 2006-09-25 | 1 | -2/+2 | |
| | | | | | have multiple bits set, which lead to surprising results. Spotted by Paul Stoeber. ok djm@ | ||||
* | fix RSA signature padding vulnerability in OpenSSL libcrypto CVE-2006-4339; | 2006-09-09 | 1 | -0/+17 | |
| | | | | ok beck@ miod@ | ||||
* | crank shlib_version | 2006-06-27 | 4 | -6/+7 | |
| | |||||
* | resolve conflicts | 2006-06-27 | 188 | -2983/+5055 | |
| | |||||
* | import of openssl-0.9.7j | 2006-06-27 | 133 | -370/+27598 | |
| |