<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/lib/libcrypto, branch libressl-v2.2.0</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=libressl-v2.2.0</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=libressl-v2.2.0'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2015-06-11T16:02:05+00:00</updated>
<entry>
<title>Avoid an infinite loop that can occur when verifying a message with an</title>
<updated>2015-06-11T16:02:05+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2015-06-11T16:02:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=9d6d7f7cdb30dbe38e9e9706b374fd26c1ca588d'/>
<id>urn:sha1:9d6d7f7cdb30dbe38e9e9706b374fd26c1ca588d</id>
<content type='text'>
unknown hash function OID.

Diff based on OpenSSL.

Fixes CVE-2015-1792 (however, this code is not enabled/built in LibreSSL).

ok doug@ miod@
</content>
</entry>
<entry>
<title>Avoid a potential out-of-bounds read in X509_cmp_time(), due to missing</title>
<updated>2015-06-11T15:58:53+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2015-06-11T15:58:53+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=652913e0fc47c01c7ce25e6f73435f2bf88f6a2e'/>
<id>urn:sha1:652913e0fc47c01c7ce25e6f73435f2bf88f6a2e</id>
<content type='text'>
length checks.

Diff based on changes in OpenSSL.

Fixes CVE-2015-1789.

ok doug@
</content>
</entry>
<entry>
<title>Avoid an infinite loop that can be triggered by parsing an ASN.1</title>
<updated>2015-06-11T15:55:28+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2015-06-11T15:55:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=095e36cd429c313ee8361e8877bc677116a2a2ce'/>
<id>urn:sha1:095e36cd429c313ee8361e8877bc677116a2a2ce</id>
<content type='text'>
ECParameters structure that has a specially malformed binary polynomial
field.

Issue reported by Joseph Barr-Pixton and fix based on OpenSSL.

Fixes CVE-2015-1788.

ok doug@ miod@
</content>
</entry>
<entry>
<title>Add OPENSSL_NO_EGD to opensslfeatures.h.</title>
<updated>2015-05-26T03:05:26+00:00</updated>
<author>
<name>bcook</name>
<email></email>
</author>
<published>2015-05-26T03:05:26+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=3fd29af5eddee4775e51770aa2f8323d34c0759b'/>
<id>urn:sha1:3fd29af5eddee4775e51770aa2f8323d34c0759b</id>
<content type='text'>
Since RAND_egd has been removed from LibreSSL, simplify porting software that
relies on it. See https://github.com/libressl-portable/openbsd/pull/34

from Bernard Spil, ok deraadt@
</content>
</entry>
<entry>
<title>Maximilian dot Fillinger at uni-duesseldorf dot de</title>
<updated>2015-05-24T15:44:52+00:00</updated>
<author>
<name>schwarze</name>
<email></email>
</author>
<published>2015-05-24T15:44:52+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=72138e7dd9423eb110e858e00b54b32be6b5aa87'/>
<id>urn:sha1:72138e7dd9423eb110e858e00b54b32be6b5aa87</id>
<content type='text'>
starts helping with the pod2mdoc(1)-based conversion
of LibreSSL crypto manuals from perlpod(1) to mdoc(7).
Here comes the first file, slightly tweaked by me.
</content>
</entry>
<entry>
<title>bump to version 2.2</title>
<updated>2015-05-23T21:09:46+00:00</updated>
<author>
<name>bcook</name>
<email></email>
</author>
<published>2015-05-23T21:09:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=fa94b8e0a497408306ccc4012ef60535fc46200a'/>
<id>urn:sha1:fa94b8e0a497408306ccc4012ef60535fc46200a</id>
<content type='text'>
ok deraadt@
</content>
</entry>
<entry>
<title>No need to check the return value of memcpy() if you actually checked this</title>
<updated>2015-05-20T04:33:35+00:00</updated>
<author>
<name>miod</name>
<email></email>
</author>
<published>2015-05-20T04:33:35+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=b4161a0eddcbbd3eef0ef0cd3f21b617d32177c3'/>
<id>urn:sha1:b4161a0eddcbbd3eef0ef0cd3f21b617d32177c3</id>
<content type='text'>
pointer for NULL the line above; ok doug@
</content>
</entry>
<entry>
<title>Record inter-library dependencies between libcrypto, libssl and libtls</title>
<updated>2015-05-17T22:39:39+00:00</updated>
<author>
<name>kettenis</name>
<email></email>
</author>
<published>2015-05-17T22:39:39+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=c5f087c6c031837a968277278b7d6de4ae1692fb'/>
<id>urn:sha1:c5f087c6c031837a968277278b7d6de4ae1692fb</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Fix return paths with missing EVP_CIPHER_CTX_cleanup() calls.</title>
<updated>2015-05-15T11:00:14+00:00</updated>
<author>
<name>jsg</name>
<email></email>
</author>
<published>2015-05-15T11:00:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=f8e03ddcf892381c04c6d2274d698a4db936d93b'/>
<id>urn:sha1:f8e03ddcf892381c04c6d2274d698a4db936d93b</id>
<content type='text'>
ok doug@
</content>
</entry>
<entry>
<title>Add SwissSign CA root certificates. Requested by robert@, ok dcoppa@ aja@ miod@</title>
<updated>2015-05-04T19:02:57+00:00</updated>
<author>
<name>sthen</name>
<email></email>
</author>
<published>2015-05-04T19:02:57+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=04e7d07f147f49d798a09b2e497a302e3e1dcb81'/>
<id>urn:sha1:04e7d07f147f49d798a09b2e497a302e3e1dcb81</id>
<content type='text'>
</content>
</entry>
</feed>
