| Commit message (Expand) | Author | Files | Lines |
2021-09-30 | Enable X509_V_FLAG_TRUSTED_FIRST by default in the legacy verifier. | deraadt | 1 | -1/+2 |
2021-09-26 | Avoid a potential overread in x509_constraints_parse_mailbox() | deraadt | 1 | -5/+9 |
2021-08-20 | In LibreSSL, printing a certificate can result in a crash inlibressl-v3.2.6 | benno | 1 | -3/+3 |
2021-03-15 | Don't leave stale sequence numbers behind in ssl3_clear()libressl-v3.2.5 | tb | 2 | -5/+13 |
2021-02-03 | This is errata/6.8/013_libressl.patch.siglibressl-v3.2.4 | tb | 12 | -28/+172 |
2020-12-08 | Fix a NULL dereference in GENERAL_NAME_cmp()libressl-v3.2.3 | tb | 6 | -11/+94 |
2020-09-26 | Ensure leaf is set up on X509_STORE_CTX before verification. | jsing | 1 | -9/+7 |
2020-09-26 | Call dtls1_hm_fragment_free() from dtls1_drain_fragments() | jsing | 2 | -8/+7 |
2020-09-26 | Have dtls1_new() call dtls1_free() on failure. | jsing | 1 | -36/+22 |
2020-09-26 | Have dtls1_hm_fragment_new() call dtls1_hm_fragment_free() on failure. | jsing | 1 | -26/+17 |
2020-09-26 | Refactor dtls1_clear_queues() | tb | 1 | -25/+26 |
2020-09-26 | jumping into the x509 fray with a bunch of whitespace repair | deraadt | 1 | -6/+6 |
2020-09-25 | move test-tls13-finished.py from slow tests to normal tests. | tb | 1 | -27/+26 |
2020-09-25 | bump to LibreSSL 3.2.2 ahead of lock | bcook | 1 | -3/+3 |
2020-09-25 | KNF for a few comments and indent a label | tb | 1 | -8/+12 |
2020-09-25 | Remove some dangling elses for consistency with the rest of the file | tb | 1 | -25/+19 |
2020-09-25 | Simplify UI_new_method() | tb | 1 | -10/+4 |
2020-09-25 | Move variable declaration to the top of UI_set_result and ditch | tb | 1 | -19/+16 |
2020-09-25 | The default branch of a switch somehow got moved inside of a pointless | tb | 1 | -3/+3 |
2020-09-25 | Simplify call to ERR_print_errors_cb() | tb | 1 | -5/+4 |
2020-09-25 | test-tls13-finished.py has 70 failing tests that expect a "decode_error" | tb | 1 | -6/+94 |
2020-09-25 | delete a stale comment | tb | 1 | -5/+1 |
2020-09-24 | Error out if ok_chars and cancel_chars overlap | tb | 1 | -2/+4 |
2020-09-24 | Fix a number of leaks in the UI_dup_* functions | tb | 1 | -143/+99 |
2020-09-24 | Push ERR_R_MALLOC_FAILURE onto the error stack | tb | 1 | -3/+3 |
2020-09-24 | Make free_strings() NULL safe | tb | 1 | -1/+3 |
2020-09-24 | KNF and grammar tweaks for comments; wrap a few overlong prototypes. | tb | 1 | -163/+188 |
2020-09-24 | Simplify the cleanup of init_buf via a ssl3_release_init_buffer() function. | jsing | 5 | -16/+22 |
2020-09-24 | Release read and write buffers using freezero(). | jsing | 4 | -21/+26 |
2020-09-23 | Ensure chain is set on the X509_STORE_CTX before triggering callback. | jsing | 1 | -12/+39 |
2020-09-22 | Comment out SSL_get0_peername(3) for the OpenBSD 6.8 release | schwarze | 1 | -4/+18 |
2020-09-22 | reword ambiguous title line; | schwarze | 1 | -3/+3 |
2020-09-21 | s/before the handshake is complete/during the handshake/g | schwarze | 1 | -8/+7 |
2020-09-21 | 1) Move the interop tests to the end so we see tlsfuzzer first | beck | 5 | -9/+35 |
2020-09-21 | two wording tweaks suggested by jsing@, adding clarity | schwarze | 1 | -5/+4 |
2020-09-21 | In ssl.h rev. 1.174 to 1.176, tb@ added some stubs related to 0-RTT data. | schwarze | 3 | -4/+183 |
2020-09-21 | move a misplaced 'goto done;' so that all invalid uris are tested | tb | 1 | -1/+1 |
2020-09-21 | add a few short invalid URIs in test_constraints1() that cause early | tb | 1 | -0/+4 |
2020-09-21 | Fix some line wrapping and other whitespace issues. | tb | 1 | -45/+34 |
2020-09-21 | Move freeing and zeroing up to right after the while loop. | tb | 1 | -5/+5 |
2020-09-20 | Avoid memleak caused by shadowing | tb | 1 | -2/+5 |
2020-09-20 | KNF/whitespace nits | tb | 2 | -6/+7 |
2020-09-20 | Correct a 1 byte read overflow in x509_contraints_uri and add | beck | 2 | -4/+13 |
2020-09-20 | Document the public function SSL_set_SSL_CTX(3) from scratch, | schwarze | 3 | -3/+72 |
2020-09-20 | Add guards around SSL_get0_peername that were accidentally omitted. | tb | 1 | -1/+3 |
2020-09-20 | Fix a memory leak in x509_constraints_extract_names | tb | 1 | -6/+6 |
2020-09-19 | remove superfluous NULL check | beck | 1 | -2/+2 |
2020-09-19 | Prepare to provide SSL_get0_peername | tb | 2 | -2/+9 |
2020-09-19 | Prepare to provide stubbed out versions for reading/writing 0-RTT data | tb | 2 | -2/+41 |
2020-09-19 | Prepare to provide SSL{,_CTX}_{get,set}_max_early_data | tb | 2 | -2/+34 |