summaryrefslogtreecommitdiffstats
path: root/CHANGES (follow)
Commit message (Expand)AuthorAgeFilesLines
* RFC 5878 support.Ben Laurie2012-05-301-0/+3
* PR: 2813Dr. Stephen Henson2012-05-111-0/+3
* PR: 2811Dr. Stephen Henson2012-05-111-2/+7
* Sanity check record length before skipping explicit IV in TLS 1.2, 1.1 andDr. Stephen Henson2012-05-101-0/+8
* Reported by: Solar Designer of OpenwallDr. Stephen Henson2012-05-101-0/+4
* Don't try to use unvalidated composite ciphers in FIPS modeDr. Stephen Henson2012-04-261-2/+9
* CHANGES: clarify.Andy Polyakov2012-04-261-1/+2
* CHANGES: fix typos and clarify.Andy Polyakov2012-04-261-3/+5
* Change value of SSL_OP_NO_TLSv1_1 to avoid clash with SSL_OP_ALL andDr. Stephen Henson2012-04-261-0/+11
* s23_clnt.c: ensure interoperability by maitaining client "version capability"Andy Polyakov2012-04-261-1/+11
* Check for potentially exploitable overflows in asn1_d2i_read_bioDr. Stephen Henson2012-04-191-1/+10
* Disable SHA-2 ciphersuites in < TLS 1.2 connections.Bodo Möller2012-04-171-0/+3
* Additional workaround for PR#2771Dr. Stephen Henson2012-04-171-0/+13
* Add support for automatic ECDH temporary key parameter selection. WhenDr. Stephen Henson2012-04-051-0/+7
* CHANGES: harmonize with 1.0.0 and 1.0.1.Andy Polyakov2012-03-311-2/+22
* Initial revision of ECC extension handling.Dr. Stephen Henson2012-03-281-0/+7
* New ctrls to retrieve supported signature algorithms and curves andDr. Stephen Henson2012-03-061-0/+5
* Add new APIs EC_curve_nist2nid and EC_curve_nid2nist which convertDr. Stephen Henson2012-02-211-0/+5
* Fix bug in CVE-2011-4619: check we have really received a client helloDr. Stephen Henson2012-02-161-0/+7
* Additional compatibility fix for MDC2 signature format.Dr. Stephen Henson2012-02-151-0/+4
* An incompatibility has always existed between the format used for RSADr. Stephen Henson2012-02-151-0/+7
* Modify client hello version when renegotiating to enhance interop withDr. Stephen Henson2012-02-091-0/+7
* Add support for distinct certificate chains per key type and per SSLDr. Stephen Henson2012-01-311-0/+4
* add support for use of fixed DH client certificatesDr. Stephen Henson2012-01-251-0/+4
* Fix for DTLS DoS issue introduced by fix for CVE-2011-4109.Dr. Stephen Henson2012-01-181-0/+16
* fix CHANGES entryDr. Stephen Henson2012-01-171-2/+6
* Support for fixed DH ciphersuites.Dr. Stephen Henson2012-01-161-0/+4
* Update for 0.9.8s and 1.0.0f, and for 1.0.1 branch.Bodo Möller2012-01-051-6/+35
* update CHANGESDr. Stephen Henson2012-01-051-1/+1
* Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>, Michael Tuexen <t...Dr. Stephen Henson2012-01-051-0/+14
* Clear bytes used for block padding of SSL 3.0 records. (CVE-2011-4576)Dr. Stephen Henson2012-01-051-0/+4
* fix CHANGESDr. Stephen Henson2012-01-051-8/+11
* Check GOST parameters are not NULL (CVE-2012-0027)Dr. Stephen Henson2012-01-051-0/+3
* Prevent malformed RFC3779 data triggering an assertion failure (CVE-2011-4577)Dr. Stephen Henson2012-01-051-0/+5
* update CHANGESDr. Stephen Henson2012-01-011-0/+3
* PR: 2658Dr. Stephen Henson2011-12-311-0/+3
* PR: 2563Dr. Stephen Henson2011-12-191-0/+3
* update CHANGES.Andy Polyakov2011-12-191-0/+11
* update CHANGESDr. Stephen Henson2011-12-191-0/+4
* Back out redundant verification time change.Ben Laurie2011-12-131-3/+0
* Make it possible to set a time for verification.Ben Laurie2011-12-131-0/+3
* update CHANGESDr. Stephen Henson2011-12-101-0/+3
* transparently handle X9.42 DH parametersDr. Stephen Henson2011-12-071-0/+5
* Initial experimental support for X9.42 DH parameter format to handleDr. Stephen Henson2011-12-071-0/+4
* Resolve a stack set-up race condition (if the list of compressionBodo Möller2011-12-021-0/+6
* Fix ecdsatest.c.Bodo Möller2011-12-021-0/+6
* Update HEAD CHANGES file.Bodo Möller2011-12-021-15/+12
* Fix BIO_f_buffer().Bodo Möller2011-12-021-0/+8
* Add TLS exporter.Ben Laurie2011-11-161-0/+3
* Add DTLS-SRTP.Ben Laurie2011-11-151-0/+6