code.
[Steve Henson]
- *) Correctly increment the reference count in the SSL_SESSION pointer
- returned from SSL_get_session().
+ *) SSL_get1_session() is like SSL_get_session(), but increments
+ the reference count in the SSL_SESSION returned.
[Geoff Thorpe <geoff@eu.c2.net>]
*) Fix for 'req': it was adding a null to request attributes.
o TLS/SSL code now "tolerates" MS SGC
o RSA_NULL option that removes RSA patent code but keeps other
RSA functionality
+ o Memory leak detection now allows applications to add extra information
+ via a per-thread stack
+ o PRNG robustness improved
Major changes between OpenSSL 0.9.3 and OpenSSL 0.9.4: