summaryrefslogtreecommitdiff
path: root/lib
AgeCommit message (Expand)Author
2014-08-07Fix CVE-2014-3511; TLS downgrade, verbatim diffTheo de Raadt
2014-08-07merge CVE-2014-3510; Fix DTLS anonymous EC(DH) denial of serviceTheo de Raadt
2014-08-06merge fix for CVE-2014-3509 -- basically a missing s->hit check; ok guentherTheo de Raadt
2014-08-06Prevent a possible use after free by mimicing the s3_srvr.c fixes contributed byMiod Vallat
2014-08-06Allow B64_EOF to follow a base64 padding character. This restores previousJoel Sing
2014-08-06Correct error checks in EVP_read_pw_string_min(): UI_add_input_string()Philip Guenther
2014-08-06Add support for loading the public/private key from memory, rather thanJoel Sing
2014-08-05Add $OpenBSD$ tags.Joel Sing
2014-08-04Implement ressl_accept_socket, which allocates a new server connectionJoel Sing
2014-08-04Return -1 on error (not 1).Joel Sing
2014-08-04A ressl server needs different configuration from a ressl client - provideJoel Sing
2014-08-04Provide a function that returns a server connection context.Joel Sing
2014-08-04Provide a utility function for loading a private/public keypair.Joel Sing
2014-08-04Improve ressl_{read,write} handling of non-blocking reads/writes.Joel Sing
2014-08-04Free the SSL context first and let the reference counting do its thing.Joel Sing
2014-08-04In chacha_init(), allow for a NULL iv. Reported by znz on github.Miod Vallat
2014-08-03X509_NAME_get_text_by_NID() returns -1 on error so the typeJonathan Gray
2014-07-29Fix a usage string; the proper spelling of 'alot' is 'a lot'.Bret Lambert
2014-07-28Remove SRP code. It contains a bug (this should not surprise anyone), butTed Unangst
2014-07-28The RSA, DH, and ECDH temporary key callbacks expect the number of keybitsPhilip Guenther
2014-07-25Add missing year to copyright.Joel Sing
2014-07-25BIO_free() returns immediately when the sole input is NULL.doug
2014-07-23Make queries using the search list for hostname lookups fail withEric Faurot
2014-07-23level_add_node(): if a memory allocation failure causes us to attempt to cleanMiod Vallat
2014-07-23Make sure PEM_def_callback() correctly handles negative buffer sizes; all usesMiod Vallat
2014-07-23Check the return value of the UI functions (including UI_new() which returnMiod Vallat
2014-07-22Now that DES_random_key() can be trusted, use it to generate DES keys in theMiod Vallat
2014-07-22In DES_random_key(), force the generated key to the odd parity before checkingMiod Vallat
2014-07-22Handle failure of NETSCAPE_SPKI_b64_encode() and don't leak memoryPhilip Guenther
2014-07-22Kill a bunch more BUF_strdup's - these are converted to have a check forBob Beck
2014-07-22better match proposed syscall apibcook
2014-07-21protect sysctl path with SYS__sysctl instead; from enh@google, ok bcookTheo de Raadt
2014-07-21Add pthread_sigmask() and raise() to the list of async signal safeMatthew Dempsky
2014-07-21Use explicit_bzero() instead of memset() on buffers going out of scope.Philip Guenther
2014-07-21cast from void * before math; enh@googleTheo de Raadt
2014-07-21missing newlineTheo de Raadt
2014-07-21Fix typo: s/lstate/lstat/Matthew Dempsky
2014-07-21Switch from <sys/endian.h> or <machine/endian.h> to the new,Philip Guenther
2006-10-10Preliminary userland bits for OpenBSD/landisk, many things coming fromMiod Vallat
2014-07-20Move more OS-specific functionality to arc4random.h headers.bcook
2014-07-20initial win32 ARC4_LOCK/UNLOCK implementation.bcook
2014-07-20From ISO/IEC 9899:1999 and 9899:201x,Philip Guenther
2014-07-20Demonstrate how new linux getrandom() will be called, at least untilTheo de Raadt
2014-07-20Mark the format string argument to BIO_*printf as not being allowed to be NULLPhilip Guenther
2014-07-19remove disabled main hook; we use phdr now; ok bcookTheo de Raadt
2014-07-19arc4random re-seeds with getentropy() now; ok deraadt@ jmc@Christian Weisgerber
2014-07-19tab loveTheo de Raadt
2014-07-19Move _ARC4_ATFORK handlers from thread_private.h in portable.bcook
2014-07-19move _ARC4_LOCK/UNLOCK primitives from thread_private into OS-specific modulesbcook
2014-07-19fixup typosbcook