<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/lib/libcrypto, branch libressl-v2.8.1</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=libressl-v2.8.1</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=libressl-v2.8.1'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2018-09-23T17:52:40+00:00</updated>
<entry>
<title>bump for LibreSSL 2.8.1</title>
<updated>2018-09-23T17:52:40+00:00</updated>
<author>
<name>bcook</name>
<email></email>
</author>
<published>2018-09-23T17:52:40+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=f5abecb9062e0d8c0287a85f40ca95017c254540'/>
<id>urn:sha1:f5abecb9062e0d8c0287a85f40ca95017c254540</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Simplify initialization of asn1_cb; use correct spelling of NULL.</title>
<updated>2018-09-17T18:18:01+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2018-09-17T18:18:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=f0f374ba92c5b66a086071327dcd9e602dd74237'/>
<id>urn:sha1:f0f374ba92c5b66a086071327dcd9e602dd74237</id>
<content type='text'>
</content>
</entry>
<entry>
<title>sync with mozilla-release (one removal, TURKTRUST, more details at</title>
<updated>2018-09-12T22:17:08+00:00</updated>
<author>
<name>sthen</name>
<email></email>
</author>
<published>2018-09-12T22:17:08+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=0731e37042e0d53709a76cd8c185118bfdc9a087'/>
<id>urn:sha1:0731e37042e0d53709a76cd8c185118bfdc9a087</id>
<content type='text'>
https://bugzilla.mozilla.org/show_bug.cgi?id=1439127)

ok danj guenther millert
</content>
</entry>
<entry>
<title>tweak previous;</title>
<updated>2018-09-12T15:09:22+00:00</updated>
<author>
<name>jmc</name>
<email></email>
</author>
<published>2018-09-12T15:09:22+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=aa9ad6b8b696d669df75e1543f0d0d8d5c25a693'/>
<id>urn:sha1:aa9ad6b8b696d669df75e1543f0d0d8d5c25a693</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Add some accessor functions:</title>
<updated>2018-09-12T06:35:38+00:00</updated>
<author>
<name>djm</name>
<email></email>
</author>
<published>2018-09-12T06:35:38+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=f4c645b723e47187baadb03d81e1b313974151a7'/>
<id>urn:sha1:f4c645b723e47187baadb03d81e1b313974151a7</id>
<content type='text'>
RSA_meth_get_finish() RSA_meth_set1_name() EVP_CIPHER_CTX_(get|set)_iv()

feedback and ok jsing@ tb@
</content>
</entry>
<entry>
<title>ASN1_OBJECTs should be freed with ASN1_OBJECT_free(3), not with free(3).</title>
<updated>2018-09-08T13:49:26+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2018-09-08T13:49:26+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=6753a9e85c3ca1350efc84ae555a7ac88810b2a3'/>
<id>urn:sha1:6753a9e85c3ca1350efc84ae555a7ac88810b2a3</id>
<content type='text'>
ok inoguchi, jsing
</content>
</entry>
<entry>
<title>indent labels</title>
<updated>2018-09-08T10:31:24+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2018-09-08T10:31:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=4626a52e8483d08f0f98c86dc00279a73388e537'/>
<id>urn:sha1:4626a52e8483d08f0f98c86dc00279a73388e537</id>
<content type='text'>
</content>
</entry>
<entry>
<title>missing word &amp; a couple of typos</title>
<updated>2018-09-08T10:20:33+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2018-09-08T10:20:33+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=74b013dac643328059455cb98a750c27be252cc7'/>
<id>urn:sha1:74b013dac643328059455cb98a750c27be252cc7</id>
<content type='text'>
</content>
</entry>
<entry>
<title>use timing-safe compares for checking results in signature verification</title>
<updated>2018-09-05T00:55:33+00:00</updated>
<author>
<name>djm</name>
<email></email>
</author>
<published>2018-09-05T00:55:33+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=cbd19c03dd185d497c1db407d6c4f002cb4abc92'/>
<id>urn:sha1:cbd19c03dd185d497c1db407d6c4f002cb4abc92</id>
<content type='text'>
(there are no known attacks, this is just inexpensive prudence)

feedback and ok tb@ jsing@
</content>
</entry>
<entry>
<title>Elliptic curve arithmetic only makes sense between points that belong to</title>
<updated>2018-09-02T17:20:31+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2018-09-02T17:20:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=32c49c1b2869018c729137c06e57058c5894a964'/>
<id>urn:sha1:32c49c1b2869018c729137c06e57058c5894a964</id>
<content type='text'>
the same curve. Some Wycheproof tests violate this assumption, making
ECDH_compute_key() compute and return garbage. Check that pub_key lies
on the curve of the private key so that the calculations make sense.
Most paths that get here have this checked (in particular those from
OpenSSH and libssl), but one might get here after using d2i_* or manual
computation.

discussed with &amp; ok jsing;
"good catch!" markus
</content>
</entry>
</feed>
