<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd, branch libressl-v2.5.1</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=libressl-v2.5.1</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=libressl-v2.5.1'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2017-02-01T06:17:42+00:00</updated>
<entry>
<title>Let realloc handle and produce moved pointers for allocations between</title>
<updated>2017-02-01T06:17:42+00:00</updated>
<author>
<name>otto</name>
<email></email>
</author>
<published>2017-02-01T06:17:42+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=3d904ce2ae6efe16909d9ba5fdc63559cd26653d'/>
<id>urn:sha1:3d904ce2ae6efe16909d9ba5fdc63559cd26653d</id>
<content type='text'>
half a page and a page. ok jmatthew@ tb@
</content>
</entry>
<entry>
<title>tweak previous;</title>
<updated>2017-01-31T20:53:50+00:00</updated>
<author>
<name>jmc</name>
<email></email>
</author>
<published>2017-01-31T20:53:50+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=6c28da67c611c03b362d37ff8812dfe07a0ff0d8'/>
<id>urn:sha1:6c28da67c611c03b362d37ff8812dfe07a0ff0d8</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Add tls_config_[add|set]keypair_ocsp functions so that ocsp staples may be</title>
<updated>2017-01-31T16:18:57+00:00</updated>
<author>
<name>beck</name>
<email></email>
</author>
<published>2017-01-31T16:18:57+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=495744c28c5684b4dc97769932647f560190a501'/>
<id>urn:sha1:495744c28c5684b4dc97769932647f560190a501</id>
<content type='text'>
added associated to a keypair used for SNI, and are usable for more than
just the "main" certificate. Modify httpd to use this.
Bump libtls minor.

ok jsing@
</content>
</entry>
<entry>
<title>Disable client-initiated renegotiation for libtls servers.</title>
<updated>2017-01-31T15:57:43+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2017-01-31T15:57:43+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=668794109cbdee39a72425d2c14f0dcf25557074'/>
<id>urn:sha1:668794109cbdee39a72425d2c14f0dcf25557074</id>
<content type='text'>
ok beck@ reyk@
</content>
</entry>
<entry>
<title>Provide an SSL_OP_NO_CLIENT_RENEGOTIATION option that disallows</title>
<updated>2017-01-31T15:35:46+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2017-01-31T15:35:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=3ad3f36472b7244bbdcd534b2487fb1c780509fa'/>
<id>urn:sha1:3ad3f36472b7244bbdcd534b2487fb1c780509fa</id>
<content type='text'>
client-initiated renegotiation. The current default behaviour remains
unchanged.

ok beck@ reyk@
</content>
</entry>
<entry>
<title>LibreSSL : regress for carry bug in mulx4x_mont and sqr8x_mont</title>
<updated>2017-01-31T13:19:05+00:00</updated>
<author>
<name>inoguchi</name>
<email></email>
</author>
<published>2017-01-31T13:19:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=246deb4bbd4aa0deb89c6c0051f717622541248e'/>
<id>urn:sha1:246deb4bbd4aa0deb89c6c0051f717622541248e</id>
<content type='text'>
This regress bntest.c patch is originally from master branch of OpenSSL.
- dca2e0e test/bntest.c: regression test for CVE-2016-7055.
- 3e7a496 test/bntest.c: regression test for carry bug in bn_sqr8x_internal.

These tests were added for these commit.
- 2fac86d bn/asm/x86_64-mont.pl: fix for CVE-2016-7055 (Low severity).
- 3f4bcf5 bn/asm/x86_64-mont5.pl: fix carry bug in bn_sqr8x_internal.

ok beck@
</content>
</entry>
<entry>
<title>LibreSSL : Truncated packet could crash via OOB read</title>
<updated>2017-01-31T13:17:21+00:00</updated>
<author>
<name>inoguchi</name>
<email></email>
</author>
<published>2017-01-31T13:17:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=06ad158da685c16adafadfcff434641236cac37c'/>
<id>urn:sha1:06ad158da685c16adafadfcff434641236cac37c</id>
<content type='text'>
This patch is originally from master branch of OpenSSL.
- 2198b3a crypto/evp: harden AEAD ciphers.
- 8e20499 crypto/evp: harden RC4_MD5 cipher.

ok tom@
</content>
</entry>
<entry>
<title>Document functions returning standard moduli for DH key exchange.</title>
<updated>2017-01-31T05:40:26+00:00</updated>
<author>
<name>schwarze</name>
<email></email>
</author>
<published>2017-01-31T05:40:26+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=ea175852b3ba110b83d5f1b24af577971174ef1c'/>
<id>urn:sha1:ea175852b3ba110b83d5f1b24af577971174ef1c</id>
<content type='text'>
jsing@ confirmed that these are public and worth documenting.
</content>
</entry>
<entry>
<title>tweak previous;</title>
<updated>2017-01-30T07:51:27+00:00</updated>
<author>
<name>jmc</name>
<email></email>
</author>
<published>2017-01-30T07:51:27+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=fc79a9702f3e2ba18070d95e2524e4a6435c0eba'/>
<id>urn:sha1:fc79a9702f3e2ba18070d95e2524e4a6435c0eba</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Document BN_set_flags(3) and BN_get_flags(3).</title>
<updated>2017-01-30T01:29:31+00:00</updated>
<author>
<name>schwarze</name>
<email></email>
</author>
<published>2017-01-30T01:29:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=19dcc2c9146afbb7e7ee92dd56ef7f469c46c87e'/>
<id>urn:sha1:19dcc2c9146afbb7e7ee92dd56ef7f469c46c87e</id>
<content type='text'>
jsing@ confirmed that these macros are public and worth documenting.
</content>
</entry>
</feed>
