]> git.ipfire.org Git - thirdparty/openssl.git/blame - CHANGES
Only allow one SGC handshake restart for SSL/TLS. (CVE-2011-4619)
[thirdparty/openssl.git] / CHANGES
CommitLineData
81a6c781 1
f1c236f8 2 OpenSSL CHANGES
651d0aff
RE
3 _______________
4
d430f56d 5 Changes between 0.9.8r and 0.9.8s [xx XXX xxxx]
21c4b259
DSH
6
7 *) Only allow one SGC handshake restart for SSL/TLS. (CVE-2011-4619)
8 [Adam Langley (Google)]
0e3a930f
DSH
9
10 *) Prevent malformed RFC3779 data triggering an assertion failure.
11 Thanks to Andrew Chi, BBN Technologies, for discovering the flaw
12 and Rob Austein <sra@hactrn.net> for fixing it. (CVE-2011-4577)
13 [Rob Austein <sra@hactrn.net>]
d430f56d 14
740da44f
BM
15 *) Fix ssl_ciph.c set-up race.
16 [Adam Langley (Google)]
17
72033fde
BM
18 *) Fix spurious failures in ecdsatest.c.
19