Resign test/certs/rootCA.pem to expire in 100 years
[openssl.git] / ssl /
2022-11-01 Tomas MrazUpdate copyright year
2022-10-26 Todd C. Millerssl_cipher_process_rulestr: don't read outside rule_str...
2022-10-11 Matt CaswellUpdate copyright year
2022-09-09 Daniel FialaConvert serverinfo in SSL_CTX_use_serverinfo() to v2.
2022-08-22 PauliCoverity 1508506: misuse of time_t
2022-08-18 PauliCoverity 1508534 & 1508540: misuses of time_t
2022-08-10 Matt CaswellFix SSL_pending() and SSL_has_pending() with DTLS
2022-07-07 Bernd EdlingerFix a memory leak in tls13_generate_secret
2022-06-21 Matt CaswellUpdate copyright year
2022-06-03 Tomas MrazFix strict client chain check with TLS-1.3
2022-05-24 Bernd EdlingerFix a crash in ssl_security_cert_chain
2022-05-09 basaveshFix leakage when the cacheline is 32-bytes in CBC_MAC_R...
2022-05-05 Tomas MrazDo not send an empty supported groups extension
2022-05-05 Hugo Landau(1.1) Add SSL_(CTX_)?get0_(verify|chain)_cert_store...
2022-05-03 Matt CaswellUpdate copyright year
2022-04-14 Bernd EdlingerFix an assertion in the DTLS server code
2022-04-13 Bernd EdlingerFix a DTLS server hangup due to TLS13_AD_MISSING_EXTENSION
2022-04-09 Dr. Matthias St... err: get rid of err_free_strings_int()
2022-03-30 Matt CaswellFix usage of SSLfatal
2022-03-30 Tomas Mraztls_process_server_hello: Disallow repeated HRR
2022-03-25 Todd Shortticket_lifetime_hint may exceed 1 week in TLSv1.3
2022-03-23 PauliFix Coverity 1498611 & 1498608: uninitialised read
2022-03-18 David Carlierprint SSL session, fix build warnings on OpenBSD.
2022-03-15 Matt CaswellUpdate copyright year
2022-03-03 Nicola Tuveri[ssl] Add SSL_kDHEPSK and SSL_kECDHEPSK as PFS ciphersu...
2022-03-03 Nicola Tuveri[ssl] Prefer SSL_k(EC)?DHE to the SSL_kE(EC)?DH alias
2021-12-14 Matt CaswellUpdate copyright year
2021-12-03 Dr. David von OheimbFix ssl_free() and thus BIO_free() to respect BIO_NOCLOSE
2021-12-01 Dmitry BelyavskiyNo EtM for GOST ciphers
2021-11-16 x2018free the Post-Handshake Auth digest when there is an...
2021-11-15 Matt CaswellReset the rwstate before calling ASYNC_start_job()
2021-11-04 Bernd EdlingerFix a memory leak in ssl_create_cipher_list
2021-11-04 Bernd EdlingerFix a memory leak in tls_parse_stoc_key_share
2021-10-11 Matt CaswellNew extensions can be sent in a certificate request
2021-09-26 Tianjia Zhangssl: Correct filename in README
2021-09-01 Tomas MrazMake the -DFUZZING_BUILD_MODE_UNSAFE_FOR_PRODUCTION...
2021-08-25 Bernd EdlingerFix some strict gcc-12 warnings
2021-08-25 Bernd EdlingerFix the array size of dtlsseq in tls1_enc
2021-08-24 Matt CaswellUpdate copyright year
2021-08-16 Todd ShortFix potential double-free
2021-07-20 Matt CaswellFix some minor record layer issues
2021-07-16 Matt CaswellDisallow SSL_key_update() if there are writes pending
2021-07-16 Matt CaswellDon't reset the packet pointer in ssl3_setup_read_buffer
2021-07-12 Matt CaswellAvoid "excessive message size" for session tickets
2021-07-08 Paulissl: do not choose auto DH groups that are weaker than...
2021-06-04 Matt CaswellOnly call dtls1_start_timer() once
2021-06-02 Trev LarockModify ssl_handshake_hash to call SSLfatal
2021-05-29 Tomas MrazPut init_ec_point_formats() inside #ifndef OPENSSL_NO_EC
2021-05-27 Todd ShortCall SSLfatal when the generate_ticket_cb returns 0
2021-05-21 Dmitry BelyavskiyCleanup the peer point formats on regotiation
2021-05-14 Benjamin KadukDon't send key_share for PSK-only key exchange
2021-05-14 Benjamin Kadukmake update
2021-05-14 Benjamin KadukImprove RFC 8446 PSK key exchange mode compliance
2021-05-06 Dmitry BelyavskiyAvoid sending alerts after shutdown
2021-05-04 Dmitry BelyavskiyUse OCSP-specific error code for clarity
2021-04-13 Todd ShortHandle set_alpn_protos inputs better.
2021-03-30 Nan XiaoFix BIO_new_ssl_connect() to not leak memory
2021-03-25 Matt CaswellUpdate copyright year
2021-03-25 Matt CaswellEnsure buffer/length pairs are always in sync
2021-03-25 Peter Kaestlessl sigalg extension: fix NULL pointer dereference
2021-03-22 Chenglong ZhangFix missing INVALID_EXTENSION
2021-03-18 Paulissl: fix coverity 1451515: out of bounds memory access
2021-02-16 Matt CaswellUpdate copyright year
2021-02-10 Benjamin KadukRemove unused 'peer_type' from SSL_SESSION
2021-01-08 anupamam13Fix for negative return value from `SSL_CTX_sess_accept()`
2021-01-08 Matt CaswellEnsure DTLS free functions can handle NULL
2020-12-10 Matt CaswellModify is_tls13_capable() to take account of the server...
2020-12-08 Matt CaswellUpdate copyright year
2020-12-02 Benjamin KadukFix comment in do_dtls1_write()
2020-10-29 Benjamin KadukUnify ssl3_get_cipher_by_std_name() implementation
2020-10-29 hklaasoptimise ssl3_get_cipher_by_std_name()
2020-10-26 Matt CaswellEnsure we raise SSLfatal on error
2020-10-20 Tomas MrazAvoid potential doublefree on dh object assigned to...
2020-10-16 Matt CaswellPass an EVP_PKEY for SSL_SECOP_TMP_DH in the security...
2020-10-13 Ikko AshimineFixed typo in ssl_lib.c
2020-10-06 Benny BaumannUse size of target buffer for allocation
2020-09-22 Matt CaswellUpdate copyright year
2020-09-21 Norman AshleySupport keys with RSA_METHOD_FLAG_NO_CHECK with OCSP...
2020-09-21 Tomas MrazDisallow certs with explicit curve in verification...
2020-09-07 Shane LontisCoverity Fixes
2020-08-13 Tomas MrazAvoid segfault in SSL_export_keying_material if there...
2020-07-22 Viktor DukhovniAvoid errors with a priori inapplicable protocol bounds
2020-07-02 Miłosz KaniewskiFree pre_proc_exts in SSL_free()
2020-06-30 Matt CaswellDon't attempt to duplicate the BIO state in SSL_dup
2020-06-30 Matt CaswellEnsure that SSL_dup copies the min/max protocol version
2020-06-17 Hubert Kariouse safe primes in ssl_get_auto_dh()
2020-06-11 Tomas MrazDo not allow dropping Extended Master Secret extension...
2020-05-20 Tomas Mrazt1_trce: Fix remaining places where the 24 bit shift...
2020-05-15 raja-ashokFix crash in early data send with out-of-band PSK using...
2020-05-15 Matt CaswellCorrect alignment calculation in ssl3_setup_write
2020-05-07 Dr. Matthias St... Fix use-after-free in BIO_C_SET_SSL callback
2020-04-21 Benjamin KadukFix NULL dereference in SSL_check_chain() for TLS 1.3
2020-03-25 Tomas MrazPartially revert "Detect EOF while reading in libssl"
2020-03-17 Matt CaswellUpdate copyright year
2020-03-13 Benjamin KadukCode to thread-safety in ChangeCipherState
2020-03-13 Benjamin KadukDon't write to the session when computing TLS 1.3 keys
2020-03-13 Benjamin KadukFix whitespace nit in ssl_generate_master_secret()
2020-02-20 Matt CaswellDetect EOF while reading in libssl
2020-02-19 Simon CornishHandle max_fragment_length overflow for DTLS
2020-02-16 Kurt RoeckxCheck that ed25519 and ed448 are allowed by the securit...
next