Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | | | update to official patch from openssl.org; ok deraadt@, millert@ | markus | 2003-03-17 | 4 | -52/+56 | |
| | | | ||||||
* | | | Less strcpy/strcat/sprintf. tdeval@ ok. | ho | 2003-03-16 | 16 | -72/+86 | |
| | | | ||||||
* | | | Enforce blinding on RSA operations involving private keys. | ho | 2003-03-15 | 4 | -8/+54 | |
| | | | | | | | | | | | | From http://www.openssl.org/~geoff, modified to be enabled at all times. | |||||
* | | | ANSI function headers | millert | 2003-03-14 | 2 | -12/+6 | |
| | | | ||||||
* | | | a few more strlcy; ok from beck & ho | deraadt | 2003-03-13 | 2 | -6/+6 | |
| | | | ||||||
* | | | signed/unsigned mixup. KAME PR 469 by Olivier Courtay. | itojun | 2003-03-07 | 1 | -2/+3 | |
| | | | ||||||
* | | | .Xr typos; | jmc | 2003-03-06 | 1 | -2/+2 | |
| | | | ||||||
* | | | .Xr's; | jmc | 2003-03-06 | 2 | -4/+4 | |
| | | | | | | | | | | | | | | | | | | typos in man page section ok deraadt@ | |||||
* | | | Fix a pasto. (There is no ULLONG_MIN, for hopefully obvious reasons) | kjell | 2003-03-06 | 1 | -4/+2 | |
| | | | | | | | | | | | | ok millert | |||||
* | | | date should be written formally: .Dd Month day, year | david | 2003-03-06 | 2 | -4/+4 | |
| | | | | | | | | | | | | ok henning@ jmc@ | |||||
* | | | jmc wrote a combination man page that covers all openssl(1) functionality, | deraadt | 2003-03-05 | 1 | -2/+1 | |
| | | | | | | | | | | | | | | | | | | based on the pod files from openssl. This may need by-hand updating once in a while, but at least now people can read a real man page instead of the mess that the openssl team provides us with. | |||||
* | | | missing #include in SYNOPSIS, found by Daniel Lucq | henning | 2003-03-04 | 1 | -1/+2 | |
| | | | | | | | | | | | | ok millert@ | |||||
* | | | strlcpy, check retval from sprintf | itojun | 2003-03-04 | 3 | -11/+18 | |
| | | | ||||||
* | | | s/strncpy/strlcpy/ | itojun | 2003-03-04 | 1 | -4/+4 | |
| | | | ||||||
* | | | Use int32_t, not long since this deals with 32bit quantities. | millert | 2003-02-28 | 1 | -20/+20 | |
| | | | | | | | | | | | | Inspired by a change in NetBSD and reported by Jan Johansson. | |||||
* | | | DSAparams_print_pf() -> DSAparams_print_fp() | cedric | 2003-02-28 | 2 | -2/+2 | |
| | | | | | | | | | | | | ok deraadt@ | |||||
* | | | Fix bogus inet_net_pton() translation example. | cedric | 2003-02-24 | 1 | -2/+2 | |
| | | | | | | | | | | | | ok henning@ | |||||
* | | | of of | deraadt | 2003-02-24 | 1 | -2/+2 | |
| | | | ||||||
* | | | check for size < 0 when allocating memory, from openssl (-r1.34) | markus | 2003-02-21 | 2 | -0/+12 | |
| | | | ||||||
* | | | fix a variety of missing or wrong MLINKS | deraadt | 2003-02-20 | 1 | -1/+2 | |
| | | | ||||||
* | | | security fix from openssl 0.9.7a: | markus | 2003-02-19 | 2 | -32/+62 | |
| | | | | | | | | | | | | | | | | | | | | | | | | In ssl3_get_record (ssl/s3_pkt.c), minimize information leaked via timing by performing a MAC computation even if incorrrect block cipher padding has been found. This is a countermeasure against active attacks where the attacker has to distinguish between bad padding and a MAC verification error. (CAN-2003-0078) | |||||
* | | | re-stir if pid changes; markus & me | deraadt | 2003-02-14 | 1 | -3/+5 | |
| | | | ||||||
* | | | delete duplicate line; jason@ackley.net, 3090 | deraadt | 2003-02-12 | 1 | -1/+0 | |
| | | | ||||||
* | | | we do not need that mess of -I | deraadt | 2003-01-31 | 1 | -42/+1 | |
| | | | ||||||
* | | | thread safer libc (note: safer, not safe) | marc | 2003-01-28 | 12 | -265/+348 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Access to the global _res structure replaced by pointers to a per thread instance. If unthreaded the pointer is to the global structure. Also replaced a 64k stack array with malloc-ed memory so threaded aps (with a default 64k stack) have a chance at working. ok deraadt@ | |||||
* | | | typos; | jmc | 2003-01-21 | 1 | -3/+3 | |
| | | | | | | | | | | | | ok deraadt@ | |||||
* | | | inet6 fixes from jmc@prioris.mini.pw.edu.pl | deraadt | 2003-01-18 | 2 | -21/+13 | |
| | | | ||||||
* | | | Add sanity check to prevent int oflow for very large allocations. | millert | 2003-01-14 | 1 | -3/+11 | |
| | | | | | | | | | | | | | | | Also fix a signed vs. unsigned issue while I am at it. Found by Jim Geovedi. OK deraadt@ | |||||
* | | | spelling | deraadt | 2003-01-04 | 2 | -2/+2 | |
| | | | ||||||
* | | | typo; torh@bogus.net | markus | 2002-12-16 | 1 | -1/+1 | |
| | | | ||||||
* | | | more writeable -> writable by torh | henning | 2002-12-15 | 1 | -2/+2 | |
| | | | ||||||
* | | | use proper __findenv() prototype; millert@ ok | mickey | 2002-12-10 | 2 | -8/+8 | |
| | | | ||||||
* | | | Document BSD behavior of accepting '-' within optstring as long as | millert | 2002-12-10 | 1 | -5/+25 | |
| | | | | | | | | | | | | | | | | | | | | | | | | it is not the fist character of optstring (since that would conflict with GNU semantics). Update the bit on "W;" within optstring when called as getopt (not getopt_long) to current reality. | |||||
* | | | When doing permutation, only treat "-" as an option if it was specified | millert | 2002-12-10 | 1 | -4/+5 | |
| | | | | | | | | | | | | in optstring. Problem noticed by Theo. | |||||
* | | | From Andrushock, s/sucess/success/g | millert | 2002-12-09 | 1 | -1/+1 | |
| | | | ||||||
* | | | Fix pasto, spotted by lebel@ | millert | 2002-12-08 | 1 | -2/+2 | |
| | | | ||||||
* | | | In BUGS section, append a warning to not use '-' as the first character | millert | 2002-12-08 | 1 | -3/+13 | |
| | | | | | | | | | | | | of optstring to avoid a semantic conflict with GNU getopt. | |||||
* | | | SUS (and apparently 1003.1-2001) say to check optstring for NULL | millert | 2002-12-08 | 2 | -4/+9 | |
| | | | ||||||
* | | | If we are passed "-" in argv and the user didn't specify '-' in optstring, | millert | 2002-12-08 | 1 | -6/+10 | |
| | | | | | | | | | | | | return -1 like POSIX requires. | |||||
* | | | BSD getopt() supports '-' in the optstring so we should too. | millert | 2002-12-08 | 1 | -8/+15 | |
| | | | | | | | | | | | | This is used by a few programs such as man and su. | |||||
* | | | Fix pasto in last commit. | millert | 2002-12-07 | 1 | -3/+3 | |
| | | | ||||||
* | | | For getopt_long_only() we *do* want to match single-character options | millert | 2002-12-07 | 1 | -41/+36 | |
| | | | | | | | | | | | | | | | as shortcuts for long ones, but only if this would not conflict with a short option in optstring. Now binutils gas works. | |||||
* | | | In srandomdev(), if we can't access /dev/arandom, use the sysctl() instead. | millert | 2002-12-06 | 1 | -10/+27 | |
| | | | | | | | | | | | | | | | We don't want to use the sysctl() by default since we are reading more than just a few bytes of entropy when setting up the state. | |||||
* | | | Fix two compatibility issues with our getopt_long_only() vs. the GNU version: | millert | 2002-12-06 | 1 | -28/+61 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | o Check for long options even when not at the beginning of an option. For instance, if -a is a short option w/o an arg and -static is a boolean long option then -astatic is valid for getopt_long_only(). o If a potential long argument does not match longopts and the first character is not a short option, print a warning and skip the rest of the argument. Also clean up some trailing whitespace and change return value of parse_long_options() from -2 to -1 when unmatched and in long_only mode. With these fixes the binutils ld seems happy with our getopt_long_only() | |||||
* | | | Correctly handle -Wlong_arg (no space between -W and long_arg) when "W;" | millert | 2002-12-05 | 1 | -6/+8 | |
| | | | | | | | | | | | | is in optstring. | |||||
* | | | Reorganize this so that getopt_only_only() works correctly. | millert | 2002-12-05 | 1 | -221/+208 | |
| | | | | | | | | | | | | | | | | | | | | | | | | In order for getopt_only_only() to work we need to check for long options before short ones. I have merged getopt_internal and getopt_long_internal into a single function with the actual long args parsing broken out into a separate function. This also simplifies the flow of control. | |||||
* | | | make getopt_long and getopt_long_only protos match getopt.h | millert | 2002-12-05 | 1 | -3/+3 | |
| | | | ||||||
* | | | Add "RETURN VALUES" sections | millert | 2002-12-04 | 2 | -2/+52 | |
| | | | ||||||
* | | | .Xr getopt_long | millert | 2002-12-04 | 1 | -1/+2 | |
| | | | ||||||
* | | | Whoops, add missing #ifdef REPLACE_GETOPT | millert | 2002-12-03 | 1 | -2/+4 | |
| | | |