Age | Commit message (Expand) | Author |
2014-08-07 | Fix CVE-2014-3511; TLS downgrade, verbatim diff | Theo de Raadt |
2014-08-07 | merge CVE-2014-3510; Fix DTLS anonymous EC(DH) denial of service | Theo de Raadt |
2014-08-06 | merge fix for CVE-2014-3509 -- basically a missing s->hit check; ok guenther | Theo de Raadt |
2014-08-06 | Prevent a possible use after free by mimicing the s3_srvr.c fixes contributed by | Miod Vallat |
2014-08-06 | Allow B64_EOF to follow a base64 padding character. This restores previous | Joel Sing |
2014-08-06 | Correct error checks in EVP_read_pw_string_min(): UI_add_input_string() | Philip Guenther |
2014-08-06 | Add support for loading the public/private key from memory, rather than | Joel Sing |
2014-08-05 | Add $OpenBSD$ tags. | Joel Sing |
2014-08-04 | Implement ressl_accept_socket, which allocates a new server connection | Joel Sing |
2014-08-04 | Return -1 on error (not 1). | Joel Sing |
2014-08-04 | A ressl server needs different configuration from a ressl client - provide | Joel Sing |
2014-08-04 | Provide a function that returns a server connection context. | Joel Sing |
2014-08-04 | Provide a utility function for loading a private/public keypair. | Joel Sing |
2014-08-04 | Improve ressl_{read,write} handling of non-blocking reads/writes. | Joel Sing |
2014-08-04 | Free the SSL context first and let the reference counting do its thing. | Joel Sing |
2014-08-04 | In chacha_init(), allow for a NULL iv. Reported by znz on github. | Miod Vallat |
2014-08-03 | X509_NAME_get_text_by_NID() returns -1 on error so the type | Jonathan Gray |
2014-07-29 | Fix a usage string; the proper spelling of 'alot' is 'a lot'. | Bret Lambert |
2014-07-28 | Remove SRP code. It contains a bug (this should not surprise anyone), but | Ted Unangst |
2014-07-28 | The RSA, DH, and ECDH temporary key callbacks expect the number of keybits | Philip Guenther |
2014-07-25 | Add missing year to copyright. | Joel Sing |
2014-07-25 | BIO_free() returns immediately when the sole input is NULL. | doug |
2014-07-23 | Make queries using the search list for hostname lookups fail with | Eric Faurot |
2014-07-23 | level_add_node(): if a memory allocation failure causes us to attempt to clean | Miod Vallat |
2014-07-23 | Make sure PEM_def_callback() correctly handles negative buffer sizes; all uses | Miod Vallat |
2014-07-23 | Check the return value of the UI functions (including UI_new() which return | Miod Vallat |
2014-07-22 | Now that DES_random_key() can be trusted, use it to generate DES keys in the | Miod Vallat |
2014-07-22 | In DES_random_key(), force the generated key to the odd parity before checking | Miod Vallat |
2014-07-22 | Handle failure of NETSCAPE_SPKI_b64_encode() and don't leak memory | Philip Guenther |
2014-07-22 | Kill a bunch more BUF_strdup's - these are converted to have a check for | Bob Beck |
2014-07-22 | better match proposed syscall api | bcook |
2014-07-21 | protect sysctl path with SYS__sysctl instead; from enh@google, ok bcook | Theo de Raadt |
2014-07-21 | Add pthread_sigmask() and raise() to the list of async signal safe | Matthew Dempsky |
2014-07-21 | Use explicit_bzero() instead of memset() on buffers going out of scope. | Philip Guenther |
2014-07-21 | cast from void * before math; enh@google | Theo de Raadt |
2014-07-21 | missing newline | Theo de Raadt |
2014-07-21 | Fix typo: s/lstate/lstat/ | Matthew Dempsky |
2014-07-21 | Switch from <sys/endian.h> or <machine/endian.h> to the new, | Philip Guenther |
2006-10-10 | Preliminary userland bits for OpenBSD/landisk, many things coming from | Miod Vallat |
2014-07-20 | Move more OS-specific functionality to arc4random.h headers. | bcook |
2014-07-20 | initial win32 ARC4_LOCK/UNLOCK implementation. | bcook |
2014-07-20 | From ISO/IEC 9899:1999 and 9899:201x, | Philip Guenther |
2014-07-20 | Demonstrate how new linux getrandom() will be called, at least until | Theo de Raadt |
2014-07-20 | Mark the format string argument to BIO_*printf as not being allowed to be NULL | Philip Guenther |
2014-07-19 | remove disabled main hook; we use phdr now; ok bcook | Theo de Raadt |
2014-07-19 | arc4random re-seeds with getentropy() now; ok deraadt@ jmc@ | Christian Weisgerber |
2014-07-19 | tab love | Theo de Raadt |
2014-07-19 | Move _ARC4_ATFORK handlers from thread_private.h in portable. | bcook |
2014-07-19 | move _ARC4_LOCK/UNLOCK primitives from thread_private into OS-specific modules | bcook |
2014-07-19 | fixup typos | bcook |