June 20, 2017
View 8ec9cfd

Preparing for release v2.3.17 (ChangeLog, version.m4, Changes.rst)

Gert Doering authored on 2017/06/20 04:02:22
June 19, 2017
View 1dde0cd

Fix potential double-free in --x509-alt-username (CVE-2017-7521)

Steffan Karger authored on 2017/06/19 18:28:40
View a6dbec1

Restrict --x509-alt-username extension types

Steffan Karger authored on 2017/06/19 18:28:39
View 84e1775

Fix remote-triggerable memory leaks (CVE-2017-7521)

Steffan Karger authored on 2017/06/19 18:28:38
View 888b0dc

auth-token with auth-nocache fix broke --disable-crypto builds

David Sommerseth authored on 2017/06/19 22:05:07
View 4d343fb

Fix potential 1-byte overread in TCP option parsing.

Gert Doering authored on 2017/06/19 04:41:04
June 16, 2017
View 479b6d1

Fix a null-pointer dereference in establish_http_proxy_passthru()

Guido Vranken authored on 2017/06/16 09:58:56
June 14, 2017
View fc61d1b

Fix remotely-triggerable ASSERT() on malformed IPv6 packet.

Gert Doering authored on 2017/06/14 05:08:32
June 11, 2017
View 464ac6e

Missing include for socket-flags TCP_NODELAY on OpenBSD

Jérémie Courrèges-Anglas authored on 2017/06/11 02:31:21
June 10, 2017
View 02845e8

Fix an unaligned access on OpenBSD/sparc64

Jérémie Courrèges-Anglas authored on 2017/06/10 23:48:44
June 9, 2017
View 64933bf

Fix memory leak in add_option() for option 'connection'

Guido Vranken authored on 2017/06/09 07:04:36
June 8, 2017
View 8ee7fae

Ensure option array p[] is always NULL-terminated

Guido Vranken authored on 2017/06/08 08:02:38
May 22, 2017
View 2368072

openssl: fix overflow check for long --tls-cipher option

Steffan Karger authored on 2017/05/22 22:54:13
May 19, 2017
View f38a4a1

Prevent two kinds of stack buffer OOB reads and a crash for invalid input data

Guido Vranken authored on 2017/05/19 21:04:25
February 25, 2017
View 199ef13

backport: Ignore auth-nocache for auth-user-pass if auth-token is pushed

David Sommerseth authored on 2017/02/25 22:10:29