| Commit message (Expand) | Author | Files | Lines |
2014-08-07 | Correct test reversed during merge of fix for CVE-2014-3509 | guenther | 2 | -4/+4 |
2014-08-07 | Fix CVE-2014-3506, DTLS handshake message size checks. From | guenther | 2 | -32/+44 |
2014-08-07 | Oops, revert changes commited by mistake. The previous commit was supposed | miod | 13 | -53/+59 |
2014-08-07 | When you expect a function to return a particular value, don't put a comment | miod | 15 | -71/+59 |
2014-08-07 | Fix CVE-2014-3511; TLS downgrade, verbatim diff | deraadt | 2 | -10/+54 |
2014-08-07 | merge CVE-2014-3510; Fix DTLS anonymous EC(DH) denial of service | deraadt | 2 | -2/+18 |
2014-08-06 | merge fix for CVE-2014-3509 -- basically a missing s->hit check; ok guenther | deraadt | 2 | -18/+26 |
2014-08-06 | Prevent a possible use after free by mimicing the s3_srvr.c fixes contributed by | miod | 2 | -8/+2 |
2014-08-06 | Allow B64_EOF to follow a base64 padding character. This restores previous | jsing | 2 | -4/+6 |
2014-08-06 | Correct error checks in EVP_read_pw_string_min(): UI_add_input_string() | guenther | 2 | -6/+6 |
2014-08-06 | Add support for loading the public/private key from memory, rather than | jsing | 4 | -13/+97 |
2014-08-05 | Add $OpenBSD$ tags. | jsing | 8 | -0/+8 |
2014-08-04 | Implement ressl_accept_socket, which allocates a new server connection | jsing | 2 | -4/+45 |
2014-08-04 | Return -1 on error (not 1). | jsing | 1 | -3/+3 |
2014-08-04 | A ressl server needs different configuration from a ressl client - provide | jsing | 3 | -0/+41 |
2014-08-04 | Provide a function that returns a server connection context. | jsing | 2 | -0/+15 |
2014-08-04 | Provide a utility function for loading a private/public keypair. | jsing | 2 | -0/+21 |
2014-08-04 | Improve ressl_{read,write} handling of non-blocking reads/writes. | jsing | 2 | -16/+31 |
2014-08-04 | Free the SSL context first and let the reference counting do its thing. | jsing | 1 | -5/+2 |
2014-08-04 | In chacha_init(), allow for a NULL iv. Reported by znz on github. | miod | 2 | -4/+6 |
2014-08-03 | X509_NAME_get_text_by_NID() returns -1 on error so the type | jsg | 1 | -1/+1 |
2014-07-29 | Fix a usage string; the proper spelling of 'alot' is 'a lot'. | blambert | 1 | -2/+2 |
2014-07-28 | Remove SRP code. It contains a bug (this should not surprise anyone), but | tedu | 12 | -3635/+2 |
2014-07-28 | The RSA, DH, and ECDH temporary key callbacks expect the number of keybits | guenther | 6 | -18/+42 |
2014-07-28 | remove non-portable __progname extern from arc4random unit test. | bcook | 1 | -2/+1 |
2014-07-27 | Link dependencies on libssl and libcrypto were missing. | guenther | 1 | -2/+3 |
2014-07-25 | Add missing year to copyright. | jsing | 4 | -8/+8 |
2014-07-25 | BIO_free() returns immediately when the sole input is NULL. | doug | 26 | -96/+61 |
2014-07-23 | level_add_node(): if a memory allocation failure causes us to attempt to clean | miod | 2 | -8/+14 |
2014-07-23 | Make sure PEM_def_callback() correctly handles negative buffer sizes; all uses | miod | 2 | -20/+34 |
2014-07-23 | Check the return value of the UI functions (including UI_new() which return | miod | 2 | -12/+22 |
2014-07-22 | Now that DES_random_key() can be trusted, use it to generate DES keys in the | miod | 4 | -24/+20 |
2014-07-22 | In DES_random_key(), force the generated key to the odd parity before checking | miod | 2 | -16/+16 |
2014-07-22 | Handle failure of NETSCAPE_SPKI_b64_encode() and don't leak memory | guenther | 1 | -6/+10 |
2014-07-22 | Use Cm instead of Li for 'MASK:' | guenther | 1 | -2/+2 |
2014-07-22 | Rewrite the description of the string_mask config file option to match | guenther | 1 | -34/+30 |
2014-07-22 | Kill a bunch more BUF_strdup's - these are converted to have a check for | beck | 12 | -30/+40 |
2014-07-22 | better match proposed syscall api | bcook | 2 | -16/+4 |
2014-07-21 | protect sysctl path with SYS__sysctl instead; from enh@google, ok bcook | deraadt | 2 | -12/+12 |
2014-07-21 | Use explicit_bzero() instead of memset() on buffers going out of scope. | guenther | 6 | -12/+18 |
2014-07-21 | cast from void * before math; enh@google | deraadt | 2 | -4/+4 |
2014-07-21 | missing newline | deraadt | 1 | -1/+2 |
2014-07-21 | Switch from <sys/endian.h> or <machine/endian.h> to the new, | guenther | 5 | -10/+10 |
2014-07-20 | Move more OS-specific functionality to arc4random.h headers. | bcook | 10 | -14/+88 |
2014-07-20 | initial win32 ARC4_LOCK/UNLOCK implementation. | bcook | 2 | -2/+42 |
2014-07-20 | From ISO/IEC 9899:1999 and 9899:201x, | guenther | 2 | -5/+5 |
2014-07-20 | Demonstrate how new linux getrandom() will be called, at least until | deraadt | 2 | -2/+74 |
2014-07-20 | Mark the format string argument to BIO_*printf as not being allowed to be NULL | guenther | 2 | -10/+14 |
2014-07-20 | Fix ordering breakage, moving the fclose() test last again. | guenther | 1 | -6/+22 |
2014-07-20 | Make sure the correct errno is reported by warn* or err* and not | guenther | 7 | -7/+14 |