| Commit message (Expand) | Author | Age | Files | Lines |
... | |
* | Fix from kinichiro.inoguchi@gmail.com to ensure that OCSP uses | beck | 2016-06-25 | 1 | -2/+2 |
* | Fix the ocsp code to actually check for errors when comparing time values | beck | 2016-06-25 | 1 | -7/+31 |
* | Disable DSA_FLAG_NO_EXP_CONSTTIME, always enable constant-time behavior. | bcook | 2016-06-21 | 3 | -88/+46 |
* | Set BN_FLG_CONSTTIME on the correct variable. beck committed wrong fix.libressl-v2.4.1 | tedu | 2016-06-06 | 1 | -2/+2 |
* | Correct a problem that prevents the DSA signing algorithm from running | beck | 2016-06-06 | 1 | -4/+6 |
* | LibreSSL 2.4.1 | bcook | 2016-06-06 | 1 | -3/+3 |
* | deprecate internal use of EVP_[Cipher|Encrypt|Decrypt]_Final. | beck | 2016-05-30 | 2 | -8/+16 |
* | use -nameopt esc_msb so "NetLock Kft" cert has the non-ascii | jsg | 2016-05-25 | 1 | -2/+2 |
* | Fix a short-read bug in the previous version of asn1_d2i_read_bio | bcook | 2016-05-20 | 1 | -26/+28 |
* | remove hppa64 port, which we never got going beyond broken single users. | deraadt | 2016-05-11 | 2 | -314/+0 |
* | fix for integer overflow in encode and encrypt update functions. | tedu | 2016-05-04 | 2 | -6/+11 |
* | fix a padding oracle in aesni cbc mac check. there must be enough data | tedu | 2016-05-04 | 1 | -1/+4 |
* | internal only negative types should not be handled here. | tedu | 2016-05-04 | 3 | -9/+3 |
* | be careful about consuming excessive memory by reading in chunks. | tedu | 2016-05-04 | 1 | -14/+37 |
* | revert the big change from yesterday to prepare for smaller commits. | tedu | 2016-05-04 | 7 | -55/+30 |
* | prefer limits.h over sys/limits.h | bcook | 2016-05-03 | 1 | -2/+2 |
* | patch from openssl for multiple issues: | tedu | 2016-05-03 | 8 | -30/+265 |
* | Crank majors for lib{crypto,ssl,tls} due to symbol removals, symbol | jsing | 2016-04-28 | 2 | -2/+2 |
* | don't go into an unbreakable infinite loop during operations such | tedu | 2016-04-28 | 1 | -1/+2 |
* | Rename EVP_aead_chacha20_poly1305() to EVP_aead_chacha20_poly1305_old() | jsing | 2016-04-28 | 2 | -13/+13 |
* | fix typo in comment; ok beck | tj | 2016-04-19 | 2 | -4/+4 |
* | Use the correct iv and counter when decrypting the ciphertext for | jsing | 2016-04-13 | 1 | -4/+4 |
* | for some time now mandoc has not required MLINKS to function | jmc | 2016-03-30 | 1 | -903/+1 |
* | fix the last bunch of NAME sections that were overlooked earlier | schwarze | 2016-03-26 | 1 | -2/+9 |
* | Return zero from two functions on allocation failure instead of always | mmcc | 2016-03-21 | 2 | -4/+4 |
* | " the the " -> " the ", or in a couple of cases replace the superfluous | krw | 2016-03-20 | 2 | -3/+3 |
* | explicit_bzero for asn1 objects on free. Too often these contain sensitive in... | beck | 2016-03-17 | 1 | -24/+27 |
* | 'accomodate' -> 'accommodate' in comments. | krw | 2016-03-15 | 5 | -9/+9 |
* | Fix examples for EVP_PKEY_CTX_set_rsa_padding. | bcook | 2016-03-13 | 2 | -2/+2 |
* | Add error handling to the remaining calls to bn_wexpand(). | bcook | 2016-03-12 | 2 | -16/+23 |
* | Remove sentences in RETURN VALUES sections saying that functions with | mmcc | 2016-03-12 | 13 | -31/+4 |
* | Bump for LibreSSL 2.4.0 | bcook | 2016-03-12 | 1 | -3/+3 |
* | X509_free(3) is NULL-safe, so remove NULL checks before its calls. | mmcc | 2016-03-11 | 8 | -29/+19 |
* | http -> https for a few more IETF URLs in comments or man pages | mmcc | 2016-03-10 | 1 | -2/+2 |
* | explict_bzero for some asn1 free's - ok miod@ | beck | 2016-03-06 | 2 | -3/+9 |
* | graduate bn_expand() to a real function. the openssl version of this | deraadt | 2016-03-04 | 2 | -4/+16 |
* | Revert bn_expand until there's consensus on a fix. | doug | 2016-03-04 | 1 | -14/+3 |
* | fix the rest of the read_ledword() calls used as lengths to be bounded. | beck | 2016-03-02 | 1 | -1/+5 |
* | Add bounds checking for BN_hex2bn/BN_dec2bn. | doug | 2016-03-02 | 2 | -10/+26 |
* | bound lengths coming out of a pem file to something like reality | beck | 2016-03-02 | 1 | -3/+7 |
* | Remove support for ancient, broken DSA implementations. | doug | 2016-03-01 | 1 | -60/+20 |
* | Sync some root certificates with Mozilla's cert store. ok bcook@ | sthen | 2016-02-17 | 1 | -84/+1016 |
* | Sort cert.pem alphabetically, first by organisation, then by CA name | sthen | 2016-02-01 | 1 | -1604/+1584 |
* | Revamp cert.pem certificate information formatting. Skip headers which | sthen | 2016-01-31 | 1 | -2459/+184 |
* | Calling clone(2) with CLONE_NEWPID yields multiple processes with pid=1. | bcook | 2016-01-04 | 2 | -4/+6 |
* | More adress -> address | mmcc | 2015-12-24 | 2 | -2/+2 |
* | remove NULL-checks before free() | mmcc | 2015-12-23 | 3 | -19/+11 |
* | assign pointer NULL rather than 0 | mmcc | 2015-12-23 | 1 | -2/+2 |
* | assign pointer to NULL rather than 0 | mmcc | 2015-12-23 | 1 | -2/+2 |
* | initialize a pointer to NULL rather than 0 | mmcc | 2015-12-22 | 1 | -2/+2 |