<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src, branch OPENBSD_5_7_BASE</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=OPENBSD_5_7_BASE</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=OPENBSD_5_7_BASE'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2015-03-08T16:48:48+00:00</updated>
<entry>
<title>This commit was manufactured by cvs2git to create tag 'OPENBSD_5_7_BASE'.</title>
<updated>2015-03-08T16:48:48+00:00</updated>
<author>
<name>cvs2svn</name>
<email>admin@example.com</email>
</author>
<published>2015-03-08T16:48:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=da1a9ad3a4a867ba6569c05e6fca66d7f296c553'/>
<id>urn:sha1:da1a9ad3a4a867ba6569c05e6fca66d7f296c553</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Reject DH keys sent by a server if they are considered too small; inspired</title>
<updated>2015-03-08T16:48:47+00:00</updated>
<author>
<name>miod</name>
<email></email>
</author>
<published>2015-03-08T16:48:47+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=973703db67a8e73d70e63afa8f2cde19da09144d'/>
<id>urn:sha1:973703db67a8e73d70e63afa8f2cde19da09144d</id>
<content type='text'>
by a similar BoringSSL change, but raising the limit to 1024 bits.
ok jsing@ markus@ guenther@ deraadt@
</content>
</entry>
<entry>
<title>Do not use sha512-parisc for now, as it is subtly bugged - passes the sha</title>
<updated>2015-03-05T20:35:28+00:00</updated>
<author>
<name>miod</name>
<email></email>
</author>
<published>2015-03-05T20:35:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=edab9f054cd9e7b7c2bb8b5683f63e8a6eaea617'/>
<id>urn:sha1:edab9f054cd9e7b7c2bb8b5683f63e8a6eaea617</id>
<content type='text'>
regress tests but causes tls ciphersuite using sha386 to fail; found the
hard way by henning@.

I can't see anything wrong in the generated assembly code yet, but building
a libcrypto with no assembler code but sha512_block_data_order() is enough
to trigger Henning's issue, so the bug lies there.

No ABI change; ok deraadt@
</content>
</entry>
<entry>
<title>subtraction is not comparison. the difference of two longs is not good</title>
<updated>2015-03-05T17:15:48+00:00</updated>
<author>
<name>tedu</name>
<email></email>
</author>
<published>2015-03-05T17:15:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=bf58bb001edc46b2379dc4ced51d2d2e084c70d8'/>
<id>urn:sha1:bf58bb001edc46b2379dc4ced51d2d2e084c70d8</id>
<content type='text'>
to place in an int. from Christian Neukirchen
ok deraadt
</content>
</entry>
<entry>
<title>Update comment to match code; Caspar Schutijser</title>
<updated>2015-03-02T21:41:08+00:00</updated>
<author>
<name>millert</name>
<email></email>
</author>
<published>2015-03-02T21:41:08+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=f6e9eb23339296eec0a10399b584cbdf4948b62f'/>
<id>urn:sha1:f6e9eb23339296eec0a10399b584cbdf4948b62f</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Fix a minor information leak that was introduced in t1_lib.c r1.71, whereby</title>
<updated>2015-03-02T13:43:09+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2015-03-02T13:43:09+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=45ee9e335c1b859ecec006aefb1a3c604a1c8d29'/>
<id>urn:sha1:45ee9e335c1b859ecec006aefb1a3c604a1c8d29</id>
<content type='text'>
an additional 28 bytes of .rodata (or .data) is provided to the network. In
most cases this is a non-issue since the memory content is already public.

Issue found and reported by Felix Groebert of the Google Security Team.

ok bcook@ beck@
</content>
</entry>
<entry>
<title>use correct formatter (int, because of type promotion after operations)</title>
<updated>2015-03-02T07:51:25+00:00</updated>
<author>
<name>bcook</name>
<email></email>
</author>
<published>2015-03-02T07:51:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=d8491142a00ece47c5cc94cd42e8ac2c83a9ef28'/>
<id>urn:sha1:d8491142a00ece47c5cc94cd42e8ac2c83a9ef28</id>
<content type='text'>
ok jsing@
</content>
</entry>
<entry>
<title>Reduce usage of predefined strings in manpages.</title>
<updated>2015-02-28T21:51:56+00:00</updated>
<author>
<name>bentley</name>
<email></email>
</author>
<published>2015-02-28T21:51:56+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=30e0ac6ee5b9eef940ce3933389cb7cdf2596723'/>
<id>urn:sha1:30e0ac6ee5b9eef940ce3933389cb7cdf2596723</id>
<content type='text'>
Predefined strings are not very portable across troff implementations,
and they make the source much harder to read. Usually the intended
character can be written directly.

No output changes, except for two instances where the incorrect escape
was used in the first place.

tweaks + ok schwarze@
</content>
</entry>
<entry>
<title>Prefix function parameter names with underscores in tls.h, since this makes</title>
<updated>2015-02-26T10:36:30+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2015-02-26T10:36:30+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=edbffccc662d783a95fcd535b216b27918cb35d0'/>
<id>urn:sha1:edbffccc662d783a95fcd535b216b27918cb35d0</id>
<content type='text'>
them guaranteed to not conflict per POSIX.

ok espie@ guenther@
</content>
</entry>
<entry>
<title>No need to use O_DIRECTORY when opening ".", O_RDONLY will suffice.</title>
<updated>2015-02-25T20:06:28+00:00</updated>
<author>
<name>millert</name>
<email></email>
</author>
<published>2015-02-25T20:06:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=40aa50ae8657784a32c40347fda42b2639f091e7'/>
<id>urn:sha1:40aa50ae8657784a32c40347fda42b2639f091e7</id>
<content type='text'>
OK guenther@
</content>
</entry>
</feed>
