June 19, 2017
View 2d032c7

Fix remote-triggerable memory leaks (CVE-2017-7521)

Steffan Karger authored on 2017/06/19 18:28:38
View 0007b2d

mbedtls: require C-string compatible types for --x509-username-field

Steffan Karger authored on 2017/06/19 18:28:37
View 4263929

mbedtls: fix --x509-track post-authentication remote DoS (CVE-2017-7522)

Steffan Karger authored on 2017/06/19 18:28:36
View 5bde5b6

auth-token with auth-nocache fix broke --disable-crypto builds

David Sommerseth authored on 2017/06/19 22:05:07
View 22046a8

Fix potential 1-byte overread in TCP option parsing.

Gert Doering authored on 2017/06/19 04:41:04
June 18, 2017
View 3d215d4

Add a DSA test key/cert pair to sample-keys

Steffan Karger authored on 2017/06/18 19:57:40
June 12, 2017
View aba98e9

OpenSSL: don't use direct access to the internal of HMAC_CTX

Emmanuel Deloget authored on 2017/06/12 22:43:29
View 6cbd48a

OpenSSL: don't use direct access to the internal of EVP_CIPHER_CTX

Emmanuel Deloget authored on 2017/06/12 22:43:28
View c481ef0

OpenSSL: don't use direct access to the internal of EVP_MD_CTX

Emmanuel Deloget authored on 2017/06/12 22:43:27
View 3fd07c3

OpenSSL: force meth->name as non-const when we free() it

Emmanuel Deloget authored on 2017/06/12 22:43:30
View c07c035

OpenSSL: don't use direct access to the internal of DSA

Emmanuel Deloget authored on 2017/06/12 22:43:26
View f7780af

OpenSSL: don't use direct access to the internal of RSA

Emmanuel Deloget authored on 2017/06/12 22:43:25
View b8ca5bc

OpenSSL: don't use direct access to the internal of EVP_PKEY

Emmanuel Deloget authored on 2017/06/12 22:43:24
May 20, 2017
View 21a540f

Fix mbedtls fingerprint calculation

Steffan Karger authored on 2017/05/20 21:57:55
February 25, 2017
View 5711653

Ignore auth-nocache for auth-user-pass if auth-token is pushed

Antonio Quartulli authored on 2017/02/25 09:40:14