diff options
author | Dr. Stephen Henson <steve@openssl.org> | 2012-01-04 23:11:43 +0000 |
---|---|---|
committer | Dr. Stephen Henson <steve@openssl.org> | 2012-01-04 23:11:43 +0000 |
commit | 0cffb0cd3e1ba8c016b92941eff172e17dbf6d4a (patch) | |
tree | 1f217cdf43036f18fb5d506a41cfc7ec1c53bed1 /CHANGES | |
parent | aaa3850ccd22feccd009a1a228424618cf10b943 (diff) | |
download | openssl-new-0cffb0cd3e1ba8c016b92941eff172e17dbf6d4a.tar.gz |
fix CHANGES
Diffstat (limited to 'CHANGES')
-rw-r--r-- | CHANGES | 25 |
1 files changed, 11 insertions, 14 deletions
@@ -10,20 +10,6 @@ *) Add support for SCTP. [Robin Seggelmann <seggelmann@fh-muenster.de>] - *) Only allow one SGC handshake restart for SSL/TLS. (CVE-2011-4619) - [Adam Langley (Google)] - - *) Only allow one SGC handshake restart for SSL/TLS. (CVE-2011-4619) - [Adam Langley (Google)] - - *) Check parameters are not NULL in GOST ENGINE. (CVE-2012-0027) - [Andrey Kulikov <amdeich@gmail.com>] - - *) Prevent malformed RFC3779 data triggering an assertion failure. - Thanks to Andrew Chi, BBN Technologies, for discovering the flaw - and Rob Austein <sra@hactrn.net> for fixing it. (CVE-2011-4577) - [Rob Austein <sra@hactrn.net>] - *) Improved PRNG seeding for VOS. [Paul Green <Paul.Green@stratus.com>] @@ -283,6 +269,17 @@ Changes between 1.0.0e and 1.0.0f [xx XXX xxxx] + *) Only allow one SGC handshake restart for SSL/TLS. (CVE-2011-4619) + [Adam Langley (Google)] + + *) Check parameters are not NULL in GOST ENGINE. (CVE-2012-0027) + [Andrey Kulikov <amdeich@gmail.com>] + + *) Prevent malformed RFC3779 data triggering an assertion failure. + Thanks to Andrew Chi, BBN Technologies, for discovering the flaw + and Rob Austein <sra@hactrn.net> for fixing it. (CVE-2011-4577) + [Rob Austein <sra@hactrn.net>] + *) Fix ssl_ciph.c set-up race. [Adam Langley (Google)] |