<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/regress/lib/libssl, branch libressl-v3.1.4</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=libressl-v3.1.4</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=libressl-v3.1.4'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2020-08-10T18:59:47+00:00</updated>
<entry>
<title>LibreSSL 3.1.4 - Interoperability and bug fixes for the TLSv1.3 client:</title>
<updated>2020-08-10T18:59:47+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2020-08-10T18:59:47+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=529117a25958fa6a044d9cf79057817756c9e16a'/>
<id>urn:sha1:529117a25958fa6a044d9cf79057817756c9e16a</id>
<content type='text'>
* Improve client certificate selection to allow EC certificates
  instead of only RSA certificates.

* Do not error out if a TLSv1.3 server requests an OCSP response as
  part of a certificate request.

* Fix SSL_shutdown behavior to match the legacy stack.  The previous
  behaviour could cause a hang.

* Fix a memory leak and add a missing error check in the handling of
  the key update message.

* Fix a memory leak in tls13_record_layer_set_traffic_key.

* Avoid calling freezero with a negative size if a server sends a
  malformed plaintext of all zeroes.

* Ensure that only PSS may be used with RSA in TLSv1.3 in order
  to avoid using PKCS1-based signatures.

* Add the P-521 curve to the list of curves supported by default
  in the client.

This is errata/6.7/019_libssl.patch.sig
</content>
</entry>
<entry>
<title>Fix out-of-bounds access in tables[][] that was exposed in bluhm's</title>
<updated>2020-05-04T14:20:36+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2020-05-04T14:20:36+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=2f51014ac0adf8681f1764313a33eab2c8e9bd11'/>
<id>urn:sha1:2f51014ac0adf8681f1764313a33eab2c8e9bd11</id>
<content type='text'>
regress on i386 after inoguchi moved some symbols to const.

ok inoguchi jsing deraadt
</content>
</entry>
<entry>
<title>Revise regress to match state transition changes.</title>
<updated>2020-04-22T17:05:53+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2020-04-22T17:05:53+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=9bcda669aab5b24846f4fdcc80d0dde9585ce078'/>
<id>urn:sha1:9bcda669aab5b24846f4fdcc80d0dde9585ce078</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Update key share regress to match previous change.</title>
<updated>2020-04-17T17:24:03+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2020-04-17T17:24:03+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=383a58ef4684ca206e1a4c221a3ce12518340d46'/>
<id>urn:sha1:383a58ef4684ca206e1a4c221a3ce12518340d46</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Revise test to handle the fact that TLSv1.3 cipher suites are now being</title>
<updated>2020-04-09T17:55:45+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2020-04-09T17:55:45+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=02f91bf85c93ea810a5debf412591a16e609bd61'/>
<id>urn:sha1:02f91bf85c93ea810a5debf412591a16e609bd61</id>
<content type='text'>
included in the output from `openssl ciphers`.
</content>
</entry>
<entry>
<title>Test both SSLv3 (aka pre-TLSv1.2) and TLSv1.2 cipher suites with TLS.</title>
<updated>2020-04-09T17:27:11+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2020-04-09T17:27:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=5e806785eb03c3eea79c60e13b7eb743e022b13b'/>
<id>urn:sha1:5e806785eb03c3eea79c60e13b7eb743e022b13b</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Re-enable the client test now that it passes again.</title>
<updated>2020-04-06T16:53:45+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2020-04-06T16:53:45+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=45824837216b6908592e42945b8372aba29c9641'/>
<id>urn:sha1:45824837216b6908592e42945b8372aba29c9641</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Minor code improvements.</title>
<updated>2020-04-06T16:53:09+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2020-04-06T16:53:09+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=dcf3abfaf99f1ee2dd47359a1944c479eaddf9bd'/>
<id>urn:sha1:dcf3abfaf99f1ee2dd47359a1944c479eaddf9bd</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Add tests that cover TLSv1.2 and disable those that trigger TLSv1.3.</title>
<updated>2020-04-06T16:52:26+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2020-04-06T16:52:26+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=32add134e786bd06a44666190d83a55085bd24a8'/>
<id>urn:sha1:32add134e786bd06a44666190d83a55085bd24a8</id>
<content type='text'>
This allows the test to pass again.
</content>
</entry>
<entry>
<title>Zero the client random field in the TLSv1.2 golden value.</title>
<updated>2020-04-06T16:50:27+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2020-04-06T16:50:27+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=be9d7e67c4931d1e39f372a02d1cd242ac0c81a9'/>
<id>urn:sha1:be9d7e67c4931d1e39f372a02d1cd242ac0c81a9</id>
<content type='text'>
</content>
</entry>
</feed>
