Skip to content
  1. Oct 27, 2018
  2. Oct 26, 2018
  3. Oct 25, 2018
  4. Oct 24, 2018
  5. Oct 23, 2018
  6. Oct 20, 2018
  7. Oct 19, 2018
  8. Oct 18, 2018
  9. Oct 17, 2018
  10. Oct 16, 2018
    • Matthew Whitehead's avatar
      x509asn1: Fix SAN IP address verification · df54b14f
      Matthew Whitehead authored
      For IP addresses in the subject alternative name field, the length
      of the IP address (and hence the number of bytes to perform a
      memcmp on) is incorrectly calculated to be zero. The code previously
      subtracted q from name.end. where in a successful case q = name.end
      and therefore addrlen equalled 0. The change modifies the code to
      subtract name.beg from name.end to calculate the length correctly.
      
      The issue only affects libcurl with GSKit SSL, not other SSL backends.
      The issue is not a security issue as IP verification would always fail.
      
      Fixes #3102
      Closes #3141
      df54b14f
  11. Oct 15, 2018