summaryrefslogtreecommitdiff
path: root/src/lib/libcrypto/buffer (unfollow)
Commit message (Collapse)AuthorFilesLines
2003-08-03MFC:brad1-8/+8
Fix by millert@ Rename rootd to needslash and invert its value. This fixes the check for ENAMETOOLONG, though since we use strlcpy() and strlcat() this is not a big deal. Problem found by vincent@ ok deraadt@
2003-03-19Errata #11 (markus):margarida1-13/+12
Fix for Klima-Pokorny-Rosa attack on RSA in SSL/TLS
2003-03-19Errata #11 (markus):margarida2-5/+30
Enforce blinding on RSA operations involving private keys. millert@ markus@ ok
2003-02-22Pull patch from current:margarida2-0/+12
Fix by markus@ check for size < 0 when allocating memory, from openssl (-r1.34) markus@ deraadt@ ok
2003-02-22Pull patch from current:margarida1-16/+31
Fix by markus@ security fix from openssl 0.9.7a: In ssl3_get_record (ssl/s3_pkt.c), minimize information leaked via timing by performing a MAC computation even if incorrrect block cipher padding has been found. This is a countermeasure against active attacks where the attacker has to distinguish between bad padding and a MAC verification error. (CAN-2003-0078) markus@ ok
2002-11-14Apply http://www.isc.org/products/BIND/patches/bind4910.diffmillert1-22/+37
Fixes bugs listed in http://www.isc.org/products/BIND/bind-security.html
2002-09-26This commit was manufactured by cvs2git to create branch 'OPENBSD_3_2'.cvs2svn650-167445/+0
2002-09-26do not install mdc2 man pages; markus okderaadt1-18/+1
2002-09-26remove MDC2; patentsmarkus5-14/+11
2002-09-25missing arg; peterw@ifost.org.auderaadt1-2/+2
2002-09-25remove rc5markus2-218/+0
2002-09-23pull in fix from openssl-0.9.7-stable-SNAP-20020921:markus2-32/+10
*) Don't impose a 16-byte length minimum on session IDs in ssl/s3_clnt.c (the SSL 3.0 and TLS 1.0 specifications allow any length up to 32 bytes). [Bodo Moeller]
2002-09-17use arc4random instead of /dev/arandom,markus2-60/+22
allows RAND_poll after chroot, ok deraadt, fgsch
2002-09-17undo local change, HMAC_Init() already does HMAC_CTX_init if(key && md)markus2-2/+0
2002-09-16add -elapsed to usage() for USE_TOD, toomarkus1-1/+1
2002-09-16sync with 0.9.7-beta3markus2-0/+8
2002-09-16remove old filesmarkus6-1680/+0
2002-09-16remove generated file (from -beta3)markus2-360/+0
2002-09-14Move __cleanup into mprotect'ed page to prevent unintentional modificationsdhartmei5-27/+90
similar to the atexit handlers. Idea and help deraadt@, ok deraadt@
2002-09-14merge with openssl-0.9.7-stable-SNAP-20020911,markus153-1211/+2465
new minor for libcrypto (_X509_REQ_print_ex) tested by miod@, pb@
2002-09-12import openssl-0.9.7-stable-SNAP-20020911 (without idea)markus128-519/+6497
2002-09-12import openssl-0.9.7-stable-SNAP-20020911 (without idea)markus41-331/+1189
2002-09-10evp.h should not pull in all other header files, especiallymarkus2-114/+0
since it's supposed to hid the specific ciphers. this change also avoids problems when evp is used together with kerberos (and <des.h>). ok deraadt@
2002-09-10merge openssl-0.9.7-beta3, tested on vax by miod@markus354-4344/+9951
2002-09-07ansi pedantic. ok deraadt@jakob1-11/+12
2002-09-06missing include, ok theohenning1-1/+2
2002-09-06use socklen_t where needed; henning pvalchev okderaadt2-5/+5
2002-09-05import openssl-0.9.7-beta3markus205-746/+5180
2002-09-05import openssl-0.9.7-beta3markus78-149/+765
2002-09-05merge with 0.9.7-beta1markus45-193/+119
2002-09-05import openssl-0.9.7-beta1markus1098-51321/+113317
2002-09-05import openssl-0.9.7-beta1markus476-27019/+46811
2002-09-04more cruftmarkus2-4/+0
2002-09-04more cruft.markus9-446/+0
2002-09-04sync formatting with 0.9.7markus2-4/+2
2002-09-04no need to set $SHELLmarkus1-1/+1
2002-09-04execute bourne shell scripts with 'sh' and not with $SHELLmarkus86-90/+90
2002-09-03sync tests with 0.9.7-beta1markus12-46/+138
2002-09-03remove whitespace changes (keep diffs to 0.9.7-beta1 minimal)markus10-10/+8
2002-09-03sync these files with openssl-0.9.7-beta1, toomarkus15-177/+359
2002-09-03build OpenSSL without symlink trees:markus14-1065/+2806
* manpage related things moved to src/libssl/man/Makefile * there are now 3 obj directories src/libssl/{crypto,ssl,man}/ instead of one single src/libssl/obj * instead of running Configure (with generates lots of symlinks, and opensslconf.h) this patch stores pre-computed opensslconf.h files in src/libssl/crypto/arch * requires a make includes before the library can be built * libssl and libcrypto can be build separately (e.g. cd src/libssl/ssl && make obj && make) * make depend is now supported * no more symlink trees tested by miod@ and fries@
2002-09-03evp_test.o should not be included in libcrypto (it defines _main !!)markus1-1/+1
no version change for the shared libs; ok deraadt@
2002-09-03not part of OpenSSL 0.9.7markus3-39/+0
2002-09-03unused files, perl subdir not part of OpenSSL 0.9.7markus14-2344/+0
2002-09-03unused files, not part of OpenSSL 0.9.7markus76-18240/+0
2002-09-02Rename a bunch of the old bsd.regress.mk variables into the new ones.avsm7-18/+18
ok art@
2002-09-02the regress target should be run-regress-atexit_test to avoidavsm1-2/+2
aborting a regress run if it fails
2002-09-01e_os.h is longer installedmarkus1-3/+3
2002-08-31ssl headers are already installed for libsslmarkus1-2/+2
2002-08-31don't install e_os.h (it's private)markus1-16/+1
remove duplicate headers, trailing whitespace