summaryrefslogtreecommitdiff
path: root/src/lib/libssl (follow)
Commit message (Expand)AuthorAgeFilesLines
* Check the return value of asn1_enc_save(). ok bcook@ doug@miod2015-07-201-2/+4
* When freeing an X509_CRL, if freeing the user-maintained meth_data fails,miod2015-07-201-3/+4
* In X509_PKEY_new(), make sure all allocation failures push an error to themiod2015-07-201-7/+15
* Remove OpenSSL engine RSAX.doug2015-07-196-703/+5
* Allow *_free() functions in libssl to handle NULL input.doug2015-07-199-9/+34
* Drop stupid (int) casts for the arguments of malloc() and friends. This ismiod2015-07-199-24/+24
* unifdef -UCBC_HANDLES_TRUNCATED_IOmiod2015-07-191-19/+1
* Verify ASN1 objects types before attempting to access them as a particularmiod2015-07-192-2/+6
* Convert ssl3_get_certificate_request to CBS.doug2015-07-192-62/+66
* Fix symbol collision with libtls.doug2015-07-197-36/+36
* Add TLS_method, TLS_client_method and TLS_server_method.doug2015-07-199-9/+321
* Crank major and remove legacy variables.doug2015-07-196-30/+6
* Now that it is safe to invoke X509_STORE_CTX_cleanup() if X509_STORE_CTX_init()miod2015-07-192-8/+16
* Put explicit braces around assignment used in a conditional.miod2015-07-191-2/+2
* Remove the logic responsible for outputting most AES-NI instructions asmiod2015-07-193-107/+0
* Replace `.byte 0x48,0x83,0xEC,0x08' with `sub \$8,%rsp' which is exactly themiod2015-07-191-2/+2
* Simplify X509_STORE_CTX_init and make it safe with stack variables.doug2015-07-191-58/+55
* Remove case that can never happen.doug2015-07-191-5/+1
* Fix Coverity 72742 - ret is overwritten immediately after this.beck2015-07-191-2/+1
* Assign p to CBS_data since it is used later.doug2015-07-192-4/+6
* abort when ENGINE_remove fails, fix Coverity 21656bcook2015-07-191-5/+2
* Convert dtls1_get_message_header to CBS and change to int.doug2015-07-186-32/+74
* rand_err doesn't exist anymore, coverity 78808beck2015-07-181-3/+3
* Coverity 21651beck2015-07-181-3/+7
* Convert dtls1_get_record to CBS.doug2015-07-182-42/+56
* Remove repeated code in dtls1_get_record.doug2015-07-182-80/+32
* Dead code, Coverity 78798beck2015-07-181-3/+1
* Coverity ID 78910 - Yet another stupid API designed to not show failures. do thebeck2015-07-181-6/+8
* Remove SSL_OP_MICROSOFT_BIG_SSLV3_BUFFER workaround.doug2015-07-1810-58/+26
* Check the return value of ASN1_STRING_set(), for it may fail to allocatemiod2015-07-182-6/+14
* Remove support for the SSL_OP_TLS_D5_BUG compat hack from SSLeay.doug2015-07-186-28/+22
* Fix leak found by coverity, issue 78897 - which also brough tobeck2015-07-183-25/+33
* delete doubled words;schwarze2015-07-174-4/+4
* extenstion -> extensionmiod2015-07-171-1/+1
* Convert ssl_parse_serverhello_use_srtp_ext to CBS.doug2015-07-174-24/+34
* Remove compat hack that disabled ECDHE-ECDSA on OS X.doug2015-07-1710-208/+26
* Remove workaround for TLS padding bug from SSLeay days.doug2015-07-1712-74/+24
* Bump LIBRESSL_VERSION defines.bcook2015-07-161-3/+7
* Enforce V_ASN1_OCTET_STRING type before accessing the object as octet string;miod2015-07-161-2/+4
* After reading a password with terminal echo off, restore the terminal toguenther2015-07-161-6/+5
* Explicitely cast a char into unsigned long before shifting it left by 24, formiod2015-07-161-2/+2
* Check return value of all used functions in OCSP_REQUEST_print(); coversmiod2015-07-161-5/+9
* Make sure the `reject negative sizes' logic introduced in 1.34 is actuallymiod2015-07-161-3/+4
* check n before cbs_init, coverity - ID 125063beck2015-07-152-6/+18
* test for n<0 before use in CBS_init - mostly to shut up coverity.beck2015-07-156-22/+66
* Flense out dead code, we don't do ecdhe_clnt_cert.beck2015-07-154-374/+150
* Fix inverted test in previous. Commit message told what we intended, butmiod2015-07-151-2/+2
* Remove dead code. Coverity CID 21688miod2015-07-151-4/+1
* Fix two theoretical NULL pointer dereferences which can only happen if youmiod2015-07-151-4/+9
* Fix possible 32 byte buffer overrun, found by coverity, CID 78869beck2015-07-151-2/+2