summaryrefslogtreecommitdiff
path: root/src/lib/libssl (follow)
Commit message (Collapse)AuthorAgeFilesLines
...
* | security fix from http://www.openssl.org/news/secadv_20030930.txtmarkus2003-09-303-2/+11
| | | | | | | | see also http://cvs.openssl.org/chngview?cn=11471
* | Revert BN_cmp() change. Its arguments are const. Spotted by miod@.otto2003-09-291-3/+0
| | | | | | | | ok deraadt@
* | Return immediately if argument to BN_sub_word is zero.otto2003-09-251-0/+3
| | | | | | | | ok markus@ deraadt@
* | Use BN_is_zero(), not x->top == 0 to test if a BN is zero.otto2003-09-251-3/+3
| | | | | | | | ok markus@ deraadt@
* | Add extra calls to bn_fix_top() in BN_cmp(), since some functions mayotto2003-09-251-0/+3
| | | | | | | | | | | | leave an invalid BN. ok markus@ deraadt@
* | Off-by-ones, from aaron@miod2003-09-222-2/+2
| |
* | You shall NOT BREAK THE TREEderaadt2003-08-252-6/+0
| |
* | Setup /dev/crypto early (SSL_library_init) to make sure it's actually donejason2003-08-252-0/+6
| | | | | | | | for all applications; ok markus and deraadt
* | Do not produce a corrupt BIGNUM when adding 0 to 0 using BN_add_word().otto2003-08-211-0/+3
| | | | | | | | ok markus@
* | support AES with 192 and 256 bit keys, too.markus2003-08-071-58/+60
| | | | | | | | tested with kern.cryptodevallowsoft=1; ok deraadt@
* | Remove some double semicolons (hmm, do two semis equal a maxi?).millert2003-08-067-7/+7
| | | | | | | | I've skipped the GNU stuff for now. From Patrick Latifi.
* | hit CLEANFILES also for cleandir targetderaadt2003-07-021-2/+2
| |
* | the thederaadt2003-06-214-4/+4
| |
* | obsoletemarkus2003-06-135-1618/+0
| |
* | nuke term 3, since we're all in ~deraadt/terms and I clued in now.beck2003-06-031-3/+0
| |
* | swap /usr/include/openssl and /usr/include/ssl, clean up the Makefilesmarkus2003-06-022-35/+25
| | | | | | | | get rid old include files; with itojun@ and tdeval@; ok itojun@, deraadt@
* | merge 0.9.7b with local changes; crank majors for libssl/libcryptomarkus2003-05-12483-4889/+7446
| |
* | This commit was generated by cvs2git to track changes on a CVS vendormarkus2003-05-1165-40/+6303
|\| | | | | branch.
| * import 0.9.7b (without idea and rc5)markus2003-05-11500-4277/+12804
| |
* | don't cast pointer to integer, use intptr_t stuff off inttypes.h insteadpvalchev2003-05-011-2/+3
| | | | | | | | ok millert
* | string cleaning; ok teduderaadt2003-04-262-16/+20
| |
* | managment -> management;jmc2003-04-261-1/+1
| | | | | | | | ok mickey@
* | remove printf("bar\n");markus2003-04-081-1/+0
| |
* | sprintf->snprintf. deraadt@ suggestions and okho2003-04-067-36/+49
| |
* | Trivial sprintf() -> snprintf() changes. ok deraadt@ho2003-04-0513-47/+65
| |
* | oopsderaadt2003-04-041-1/+1
| |
* | incorrect bounds limit; spotted by hoderaadt2003-04-041-6/+8
| |
* | more strcpy & sprintf murder; ho okderaadt2003-04-0410-41/+42
| |
* | Correct off-by-one error in previous commit. millert@ ok.ho2003-04-031-2/+3
| |
* | str{cat,cpy}/sprintf cleanup. markus@, deraadt@ okho2003-04-039-26/+32
| |
* | Remove crypt macro, it conflicts with unistd.hhin2003-04-031-0/+2
| | | | | | | | ok markus@
* | Fix for Klima-Pokorny-Rosa attack on RSA in SSL/TLS, seemarkus2003-03-192-26/+24
| | | | | | | | http://marc.theaimsgroup.com/?l=bugtraq&m=104811162730834&w=2
* | update to official patch from openssl.org; ok deraadt@, millert@markus2003-03-172-26/+28
| |
* | Less strcpy/strcat/sprintf. tdeval@ ok.ho2003-03-168-36/+43
| |
* | Enforce blinding on RSA operations involving private keys.ho2003-03-152-4/+27
| | | | | | | | From http://www.openssl.org/~geoff, modified to be enabled at all times.
* | jmc wrote a combination man page that covers all openssl(1) functionality,deraadt2003-03-051-2/+1
| | | | | | | | | | | | based on the pod files from openssl. This may need by-hand updating once in a while, but at least now people can read a real man page instead of the mess that the openssl team provides us with.
* | DSAparams_print_pf() -> DSAparams_print_fp()cedric2003-02-281-1/+1
| | | | | | | | ok deraadt@
* | check for size < 0 when allocating memory, from openssl (-r1.34)markus2003-02-211-0/+6
| |
* | security fix from openssl 0.9.7a:markus2003-02-192-32/+62
| | | | | | | | | | | | | | | | In ssl3_get_record (ssl/s3_pkt.c), minimize information leaked via timing by performing a MAC computation even if incorrrect block cipher padding has been found. This is a countermeasure against active attacks where the attacker has to distinguish between bad padding and a MAC verification error. (CAN-2003-0078)
* | delete duplicate line; jason@ackley.net, 3090deraadt2003-02-121-1/+0
| |
* | we do not need that mess of -Ideraadt2003-01-311-42/+1
| |
* | spellingderaadt2003-01-041-1/+1
| |
* | typo; torh@bogus.netmarkus2002-12-161-1/+1
| |
* | From Andrushock, s/sucess/success/gmillert2002-12-091-1/+1
| |
* | Crank all library major numbers. Needed due to the fact that wemillert2002-12-033-3/+3
| | | | | | | | | | | | | | | | now build libraries with propolice enabled. Without this, existing binaries (such as ports/packages) that link with any system library other than libc will fail with an undefined symbol of "___guard" (__guard on ELF). Pointed out by markus@ and discussed with deraadt@
* | install SSL_do_handshake(3) as well; markus@ okfgsch2002-10-091-1/+2
| |
* | do not install mdc2 man pages; markus okderaadt2002-09-261-18/+1
| |
* | remove MDC2; patentsmarkus2002-09-263-7/+9
| |
* | remove rc5markus2002-09-251-109/+0
| |
* | pull in fix from openssl-0.9.7-stable-SNAP-20020921:markus2002-09-232-32/+10
| | | | | | | | | | | | *) Don't impose a 16-byte length minimum on session IDs in ssl/s3_clnt.c (the SSL 3.0 and TLS 1.0 specifications allow any length up to 32 bytes). [Bodo Moeller]