1. 22 Jan, 2015 13 commits
  2. 15 Jan, 2015 4 commits
  3. 14 Jan, 2015 1 commit
  4. 13 Jan, 2015 4 commits
  5. 09 Jan, 2015 2 commits
  6. 08 Jan, 2015 10 commits
  7. 07 Jan, 2015 1 commit
  8. 06 Jan, 2015 4 commits
  9. 05 Jan, 2015 1 commit
    • Dr. Stephen Henson's avatar
      ECDH downgrade bug fix. · 802a070b
      Dr. Stephen Henson authored
      
      
      Fix bug where an OpenSSL client would accept a handshake using an
      ephemeral ECDH ciphersuites with the server key exchange message omitted.
      
      Thanks to Karthikeyan Bhargavan for reporting this issue.
      
      CVE-2014-3572
      Reviewed-by: default avatarMatt Caswell <matt@openssl.org>
      
      (cherry picked from commit b15f8769)
      
      Conflicts:
      	CHANGES
      802a070b