Bring in the 1.0.1g to 1.0.1h changes into CHANGES.
[openssl.git] / ssl /
2014-06-11 Andy PolyakovEnable multi-block support by default.
2014-06-10 Matt CaswellFixed incorrect return code handling in ssl3_final_fini...
2014-06-10 Mike BlandCreate test/testutil.h for unit test helper macros
2014-06-10 Dr. Stephen HensonRemove experimental DANE code.
2014-06-10 Dr. Stephen HensonFix null pointer errors.
2014-06-09 Dr. Stephen HensonSRP ciphersuite correction.
2014-06-09 Dr. Stephen HensonUpdate strength_bits for 3DES.
2014-06-07 Dr. Stephen HensonMake tls_session_secret_cb work with CVE-2014-0224...
2014-06-05 Dr. Stephen HensonFix for CVE-2014-0195
2014-06-05 Dr. Stephen HensonFix for CVE-2014-0224
2014-06-05 Dr. Stephen HensonAdditional CVE-2014-0224 protection.
2014-06-05 Dr. Stephen HensonFix CVE-2014-0221
2014-06-05 Dr. Stephen HensonFix CVE-2014-3470
2014-06-02 David BenjaminCheck there is enough room for extension.
2014-06-02 zhu qun-yingFree up s->d1->buffered_app_data.q properly.
2014-06-02 Sami FarinTypo: set i to -1 before goto.
2014-06-01 Matt CaswellAdded SSLErr call for internal error in dtls1_buffer_record
2014-06-01 David RamosDelays the queue insertion until after the ssl3_setup_b...
2014-06-01 Dr. Stephen HensonOption to disable padding extension.
2014-06-01 David RamosAllocate extra space when NETSCAPE_HANG_BUG defined.
2014-05-30 Dr. Stephen HensonUse correct digest when exporting keying material.
2014-05-30 Dr. Stephen HensonDon't compile heartbeat test code on Windows (for now).
2014-05-22 Mike BlandFix heartbeat_test for -DOPENSSL_NO_HEARTBEATS
2014-05-20 Ben LaurieFix signed/unsigned warning.
2014-05-20 Dr. Stephen HensonFor portability use BUF_strndup instead of strndup.
2014-05-20 Dr. Stephen HensonAdding padding extension to trace code.
2014-05-19 Ben LaurieMerge branch 'mbland-heartbeat-test-1.0.2' into OpenSSL...
2014-05-18 Mike BlandUnit/regression test for TLS heartbeats.
2014-05-12 Kurt RoeckxCheck sk_SSL_CIPHER_num() after assigning sk.
2014-05-12 Serguei E. LeontievReplace manual ASN1 decoder with ASN1_get_object
2014-05-11 Matt CaswellFixed NULL pointer dereference. See PR#3321
2014-05-11 Günther NoackAvoid out-of-bounds write in SSL_get_shared_ciphers
2014-05-11 Matt CaswellMove length check earlier to ensure we don't go beyond...
2014-05-11 Tim Hudsonsafety check to ensure we dont send out beyond the...
2014-05-07 Tim Hudsonfix coverity issue 966597 - error line is not always...
2014-04-30 Matt CaswellFixed spelling error in error message. Fix supplied...
2014-04-23 Ben LaurieFix use after free.
2014-04-21 Kaspar BrandFix SSL_CTX_get{first,next}_certificate.
2014-04-08 Steven M. SchwedaVMS build fix #2.
2014-04-07 Steven M. SchwedaVMS build fix for older compilers.
2014-04-07 Dr. Stephen HensonAdd heartbeat extension bounds check.
2014-04-05 Dr. Stephen HensonSet TLS padding extension value.
2014-03-27 Dr. Stephen HensonFix memory leak with client auth.
2014-03-27 Dr. Stephen HensonAdd -no_resumption_on_reneg to SSL_CONF.
2014-03-27 Dr. Stephen HensonUpdate chain building function.
2014-03-25 Emilia KasperAllow duplicate certs in ssl_build_cert_chain
2014-03-18 Piotr SikoraRetry callback only after ClientHello received.
2014-03-10 Dr. Stephen Hensontypo
2014-03-06 Andy Polyakovbss_dgram.c,d1_lib.c: make it compile with mingw.
2014-03-01 Dr. Stephen HensonAdd function to free compression methods.
2014-02-28 Dr. Stephen HensonFix compilation errors with no-nextprotoneg
2014-02-26 Dr. Stephen HensonFix for WIN32 builds with KRB5
2014-02-25 Andy Polyakovssl/t1_enc.c: check EVP_MD_CTX_copy return value.
2014-02-25 Dr. Stephen HensonDon't use BN_ULLONG in n2l8 use SCTS_TIMESTAMP.
2014-02-23 Dr. Stephen HensonOnly set current certificate to valid values.
2014-02-23 Dr. Stephen HensonNew chain building flags.
2014-02-23 Dr. Stephen HensonOption to set current cert to server certificate.
2014-02-23 Ben LaurieFix typo.
2014-02-21 Andy Polyakovssl/ssl_cert.c: DANE update.
2014-02-20 Dr. Stephen Hensonfix WIN32 warnings
2014-02-20 Rob StradlingShow the contents of the RFC6962 Signed Certificate...
2014-02-14 Dr. Stephen HensonFix error discrepancy with 1.0.1
2014-02-14 Andy Polyakovssl/s3_pkt.c: detect RAND_bytes error in multi-block.
2014-02-13 Andy Polyakovssl/ssl[3].h: retain binary compatibility.
2014-02-09 Dr. Stephen Hensonfix error discrepancy
2014-02-09 Dr. Stephen Hensonfix error number clash
2014-02-09 Ben LaurieMerge branch '102_stable_tlsext_suppdata_changes' of...
2014-02-09 Ben LaurieMore cleanup.
2014-02-09 Ben LaurieMake it build.
2014-02-09 Scott DeboyReverting 1.0.2-only changes supporting the prior authz...
2014-02-09 Scott DeboyDon't break out of the custom extension callback loop...
2014-02-09 Ben LaurieFix whitespace, new-style comments.
2014-02-09 Scott DeboyRe-add alert variables removed during rebase
2014-02-09 Scott DeboyUpdating DTCP authorization type to expected value
2014-02-09 Scott DeboyUpdate custom TLS extension and supplemental data ...
2014-02-09 Trevor PerrinRedo deletion of some serverinfo code that supplemental...
2014-02-09 Scott DeboyAdd callbacks supporting generation and retrieval of...
2014-02-06 Dr. Stephen HensonReturn previous compression methods when setting them.
2014-02-05 Andy Polyakovssl/s3_pkt.c: add multi-block processing [from master].
2014-02-05 Dr. Stephen HensonOops, get selection logic right.
2014-02-05 Dr. Stephen HensonReturn per-certificate chain if extra chain is NULL.
2014-02-02 Dr. Stephen HensonNew ctrl to set current certificate.
2014-02-01 Andy PolyakovAdd AES-NI+SHA256 stitch registrations (from master).
2014-02-01 Andy PolyakovImprove WINCE support.
2014-01-28 Dr. Stephen HensonCheck i before r[i].
2014-01-27 Dr. Stephen HensonSupport retries in certificate callback
2014-01-27 Dr. Stephen HensonNew function to set compression methods so they can...
2014-01-16 Dr. Stephen HensonAdd new function SSL_CTX_get_ssl_method().
2014-01-16 Kaspar BrandOmit initial status request callback check.
2014-01-11 Zoltan ArpadffyVMS fixes
2014-01-07 Dr. Stephen HensonAdd fix for CVE-2013-4353
2014-01-04 Dr. Stephen HensonRestore SSL_OP_MSIE_SSLV2_RSA_PADDING
2014-01-03 Dr. Stephen HensonUse algorithm specific chains for certificates.
2014-01-03 Andy Polyakovssl/t1_enc.c: optimize PRF (suggested by Intel).
2014-01-02 Dr. Stephen HensonDon't change version number if session established
2013-12-29 Dr. Stephen HensonUpdate curve list size.
2013-12-20 Dr. Stephen HensonFix DTLS retransmission from previous session.
2013-12-18 Dr. Stephen HensonCheck EVP errors for handshake digests.
2013-12-13 Dr. Stephen HensonBackport TLS padding extension from master.
2013-12-13 Dr. Stephen HensonVerify parameter retrieval functions.
next