summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorDr. Stephen Henson <steve@openssl.org>2014-04-07 19:29:04 +0100
committerDr. Stephen Henson <steve@openssl.org>2014-04-07 19:29:04 +0100
commit43866bd6fcb8c3042bdce3495b052cd7f31ab94f (patch)
tree29fed60a36d71531b9fdf7930daa560b9ccad2bf
parentcd29ced6de9a5458764d94620588bfb5fa2624ba (diff)
downloadopenssl-new-43866bd6fcb8c3042bdce3495b052cd7f31ab94f.tar.gz
update NEWS
-rw-r--r--NEWS8
1 files changed, 7 insertions, 1 deletions
diff --git a/NEWS b/NEWS
index af64d9bc52..0cdf818c33 100644
--- a/NEWS
+++ b/NEWS
@@ -10,7 +10,7 @@
o v3_scts.c compilation error on some platforms: fixed in 1.0.2-beta2-dev
o Issues compiling WIN32 fips static libraries: fixed in 1.0.2-beta2-dev
- Major changes between OpenSSL 1.0.1f and OpenSSL 1.0.2 [in beta]:
+ Major changes between OpenSSL 1.0.1g and OpenSSL 1.0.2 [in beta]:
o Suite B support for TLS 1.2 and DTLS 1.2
o Support for DTLS 1.2
@@ -21,6 +21,12 @@
o ALPN support.
o CMS support for RSA-PSS, RSA-OAEP, ECDH and X9.42 DH.
+ Major changes between OpenSSL 1.0.1f and OpenSSL 1.0.1g [7 Apr 2014]
+
+ o Fix for CVE-2014-0160
+ o Add TLS padding extension workaround for broken servers.
+ o Fix for CVE-2014-0076
+
Major changes between OpenSSL 1.0.1e and OpenSSL 1.0.1f [6 Jan 2014]
o Don't include gmt_unix_time in TLS server and client random values