<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/lib/libssl, branch OPENBSD_5_3</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=OPENBSD_5_3</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=OPENBSD_5_3'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2014-04-12T17:00:23+00:00</updated>
<entry>
<title>from head, will become 5.3 015_openssl.patch</title>
<updated>2014-04-12T17:00:23+00:00</updated>
<author>
<name>deraadt</name>
<email></email>
</author>
<published>2014-04-12T17:00:23+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=3d18da11930bfd9f79d956f61dac9ed80a59c9d1'/>
<id>urn:sha1:3d18da11930bfd9f79d956f61dac9ed80a59c9d1</id>
<content type='text'>
Changes by:     tedu@cvs.openbsd.org    2014/04/10 13:01:37
Piotr Sikora pointed me at a more refined diff for the buffer release
issue. Apply that version. Maybe someday upstream will wake up and then
we can have the same code.
https://rt.openssl.org/Ticket/Display.html?id=2167&amp;user=guest&amp;pass=guest
</content>
</entry>
<entry>
<title>MFC:</title>
<updated>2014-04-08T00:55:05+00:00</updated>
<author>
<name>djm</name>
<email></email>
</author>
<published>2014-04-08T00:55:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=d33a9925ec86de1237af4e277e13519e6db8c02a'/>
<id>urn:sha1:d33a9925ec86de1237af4e277e13519e6db8c02a</id>
<content type='text'>
cherrypick fix for CVE-2014-0160 "heartbleed" vulnerability from
OpenSSL git; ok sthen@
</content>
</entry>
<entry>
<title>MFC: Reliability fix for SHA384 SSL/TLS ciphers on strict alignment</title>
<updated>2013-12-20T02:17:26+00:00</updated>
<author>
<name>jca</name>
<email></email>
</author>
<published>2013-12-20T02:17:26+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=db10c49019c97238542fb1bf4dbf020a0d9345c7'/>
<id>urn:sha1:db10c49019c97238542fb1bf4dbf020a0d9345c7</id>
<content type='text'>
architectures.  ok miod@ djm@
</content>
</entry>
<entry>
<title>This commit was manufactured by cvs2git to create branch 'OPENBSD_5_3'.</title>
<updated>2013-02-14T15:11:46+00:00</updated>
<author>
<name>cvs2svn</name>
<email>admin@example.com</email>
</author>
<published>2013-02-14T15:11:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=ea8e2e523f2d3c4f8a5344a44b0a6b62b2baffb0'/>
<id>urn:sha1:ea8e2e523f2d3c4f8a5344a44b0a6b62b2baffb0</id>
<content type='text'>
</content>
</entry>
<entry>
<title>cherry pick bugfixes for http://www.openssl.org/news/secadv_20130205.txt</title>
<updated>2013-02-14T15:11:44+00:00</updated>
<author>
<name>markus</name>
<email></email>
</author>
<published>2013-02-14T15:11:44+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=4383d44ca79eba8836d9f92c612c44ba8aeb87bd'/>
<id>urn:sha1:4383d44ca79eba8836d9f92c612c44ba8aeb87bd</id>
<content type='text'>
from the openssl git (changes between openssl 1.0.1c and 1.0.1d).
ok djm@
</content>
</entry>
<entry>
<title>remove ACSS, crank libcrypto major; ok markus@ deraadt@</title>
<updated>2013-01-26T06:10:22+00:00</updated>
<author>
<name>djm</name>
<email></email>
</author>
<published>2013-01-26T06:10:22+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=4fd69672e5f9867343486cefcdfdd970465430d6'/>
<id>urn:sha1:4fd69672e5f9867343486cefcdfdd970465430d6</id>
<content type='text'>
</content>
</entry>
<entry>
<title>New CA root certificates, ok beck@.</title>
<updated>2012-12-03T10:19:09+00:00</updated>
<author>
<name>sthen</name>
<email></email>
</author>
<published>2012-12-03T10:19:09+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=345bc900a13adaa14ff6b12c1e68c0e306c360af'/>
<id>urn:sha1:345bc900a13adaa14ff6b12c1e68c0e306c360af</id>
<content type='text'>
- additional cert's from GlobalSign.

- additional cert's from VeriSign and replace existing ones with
'Signature Algorithm: md2WithRSAEncryption' with their currently
distributed sha1WithRSAEncryption versions.

- new CAs: AddTrust (root for most Comodo certificates also heavily
used in academic networks), Comodo (most of their certs are rooted in
AddTrust but TERENA use the Comodo AAA Certificate Services root
for some things so add that separately), UserTrust Network/UTN
(part of Comodo) and Starfield (part of Go Daddy).
</content>
</entry>
<entry>
<title>Additional CA root certificates: GeoTrust/Equifax, Go Daddy, StartCom, thawte.</title>
<updated>2012-12-01T09:22:33+00:00</updated>
<author>
<name>sthen</name>
<email></email>
</author>
<published>2012-12-01T09:22:33+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=a75d8a8f0bd651ead5696ecd12f58ee04c4789ed'/>
<id>urn:sha1:a75d8a8f0bd651ead5696ecd12f58ee04c4789ed</id>
<content type='text'>
ok beck@ william@ todd@
</content>
</entry>
<entry>
<title>Regenerate the text information for all certificates with recent openssl</title>
<updated>2012-11-30T21:20:24+00:00</updated>
<author>
<name>sthen</name>
<email></email>
</author>
<published>2012-11-30T21:20:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=16bde10a05cda2c9dee534fd96ec70280d88b402'/>
<id>urn:sha1:16bde10a05cda2c9dee534fd96ec70280d88b402</id>
<content type='text'>
and include sha1 signatures for all certs (some were missing).

No certificate changes, this is just for consistency.  ok beck@
</content>
</entry>
<entry>
<title>Remove retired Thawte/Verisign certificates.</title>
<updated>2012-11-30T18:19:42+00:00</updated>
<author>
<name>sthen</name>
<email></email>
</author>
<published>2012-11-30T18:19:42+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=c3e74e2b3bf9fa43189627ce3848e4b407133920'/>
<id>urn:sha1:c3e74e2b3bf9fa43189627ce3848e4b407133920</id>
<content type='text'>
Remove intermediate GoDaddy certificate, this file should just contain roots.

ok beck@ phessler@
</content>
</entry>
</feed>
