oweals/openssl.git
21 years agoStop bug triggering large recursion when presented with OpenSSL-engine-0_9_6l
Mark J. Cox [Tue, 4 Nov 2003 11:33:12 +0000 (11:33 +0000)]
Stop bug triggering large recursion when presented with
certain ASN.1 tags (CAN-2003-0851)

21 years agoChanges from 0.9.6-stable.
Richard Levitte [Mon, 3 Nov 2003 13:26:04 +0000 (13:26 +0000)]
Changes from 0.9.6-stable.

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Thu, 2 Oct 2003 18:09:29 +0000 (18:09 +0000)]
Recent changes from 0.9.6-stable.

21 years agoNew dev version.
Dr. Stephen Henson [Tue, 30 Sep 2003 13:15:54 +0000 (13:15 +0000)]
New dev version.

21 years agoChanges for release OpenSSL-engine-0_9_6k
Dr. Stephen Henson [Tue, 30 Sep 2003 12:10:07 +0000 (12:10 +0000)]
Changes for release

21 years agoFix for ASN1 parsing bugs.
Dr. Stephen Henson [Tue, 30 Sep 2003 12:06:17 +0000 (12:06 +0000)]
Fix for ASN1 parsing bugs.

21 years agoFix warning on Win32.
Dr. Stephen Henson [Mon, 29 Sep 2003 17:19:24 +0000 (17:19 +0000)]
Fix warning on Win32.

21 years agoRecent changes from 0.9.6-stable
Richard Levitte [Mon, 29 Sep 2003 15:14:23 +0000 (15:14 +0000)]
Recent changes from 0.9.6-stable

21 years agoRecent changes from 0.9.6-stable
Richard Levitte [Mon, 8 Sep 2003 16:57:29 +0000 (16:57 +0000)]
Recent changes from 0.9.6-stable

21 years agoRecent changes from 0.9.6-stable
Richard Levitte [Thu, 14 Aug 2003 06:33:04 +0000 (06:33 +0000)]
Recent changes from 0.9.6-stable

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Sat, 9 Aug 2003 09:35:57 +0000 (09:35 +0000)]
Recent changes from 0.9.6-stable.

21 years agoBring 0.9.6 [engine] up to date with 0.9.6.
Richard Levitte [Thu, 19 Jun 2003 23:26:01 +0000 (23:26 +0000)]
Bring 0.9.6 [engine] up to date with 0.9.6.

21 years agoThis memset() in the ubsec ENGINE is a bug. Zeroing out the result array
Geoff Thorpe [Fri, 6 Jun 2003 17:54:22 +0000 (17:54 +0000)]
This memset() in the ubsec ENGINE is a bug. Zeroing out the result array
should not be necessary in any case, but more importantly the result and
input BIGNUMs could be the same, in which case this is clearly a problem.

Submitted by: Jonathan Hersch
Reviewed by: Joe Orton
Approved by: Geoff Thorpe

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Wed, 16 Apr 2003 06:41:51 +0000 (06:41 +0000)]
Recent changes from 0.9.6-stable.

21 years agoOne hack of LD_LIBRARY_PATH was forgotten.
Richard Levitte [Mon, 14 Apr 2003 06:28:59 +0000 (06:28 +0000)]
One hack of LD_LIBRARY_PATH was forgotten.

21 years agoThe release is tagged, time to hope we won't have to work on 0.9.6k [engine].
Richard Levitte [Thu, 10 Apr 2003 20:57:53 +0000 (20:57 +0000)]
The release is tagged, time to hope we won't have to work on 0.9.6k [engine].

21 years agoTime to release OpenSSL 0.9.6j [engine]. OpenSSL-engine-0_9_6j
Richard Levitte [Thu, 10 Apr 2003 20:43:00 +0000 (20:43 +0000)]
Time to release OpenSSL 0.9.6j [engine].
The tag will be OpenSSL-engine-0_9_6j.

21 years agoRecent changes from 0.9.6-stable
Richard Levitte [Thu, 10 Apr 2003 20:12:24 +0000 (20:12 +0000)]
Recent changes from 0.9.6-stable

21 years agonew NEWS
Richard Levitte [Thu, 10 Apr 2003 19:37:38 +0000 (19:37 +0000)]
new NEWS

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Thu, 10 Apr 2003 06:45:17 +0000 (06:45 +0000)]
Recent changes from 0.9.6-stable.

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Tue, 8 Apr 2003 11:19:05 +0000 (11:19 +0000)]
Recent changes from 0.9.6-stable.

21 years agoAdapt method retrieval to the engine variant.
Richard Levitte [Tue, 8 Apr 2003 06:32:48 +0000 (06:32 +0000)]
Adapt method retrieval to the engine variant.

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Wed, 2 Apr 2003 11:21:31 +0000 (11:21 +0000)]
Recent changes from 0.9.6-stable.

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Thu, 27 Mar 2003 20:06:29 +0000 (20:06 +0000)]
Recent changes from 0.9.6-stable.

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Tue, 25 Mar 2003 01:26:54 +0000 (01:26 +0000)]
Recent changes from 0.9.6-stable.

21 years ago[This should have been done long ago]
Richard Levitte [Tue, 25 Mar 2003 01:13:36 +0000 (01:13 +0000)]
[This should have been done long ago]

Update the version info to reflect that this branch has gone to
development of version 0.9.6j.  Further development of this branch
would normally only contain security updates.

21 years agoAll kinds of changes from 0.9.6-stable. OpenSSL-engine-0_9_6i
Richard Levitte [Wed, 19 Feb 2003 12:45:18 +0000 (12:45 +0000)]
All kinds of changes from 0.9.6-stable.
Time to release 0.9.6i [engine].
The tag will be OpenSSL-engine-0_9_6i.

21 years agoAll kinds of changes from 0.9.6-stable.
Richard Levitte [Wed, 19 Feb 2003 12:32:21 +0000 (12:32 +0000)]
All kinds of changes from 0.9.6-stable.

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Sat, 28 Dec 2002 02:01:45 +0000 (02:01 +0000)]
Recent changes from 0.9.6-stable.

21 years agoTime to go on to 0.9.i [engine], even if it will never be released...
Richard Levitte [Fri, 6 Dec 2002 00:45:21 +0000 (00:45 +0000)]
Time to go on to 0.9.i [engine], even if it will never be released...

21 years agomake update OpenSSL-engine-0_9_6h
Richard Levitte [Thu, 5 Dec 2002 22:50:32 +0000 (22:50 +0000)]
make update
Time to release 0.9.6h [engine].
The tag will be OpenSSL-engine-0_9_6h.

21 years agoRecent changes from 0.9.6-stable
Richard Levitte [Thu, 5 Dec 2002 02:05:20 +0000 (02:05 +0000)]
Recent changes from 0.9.6-stable

21 years agoRecent changes from 0.9.6-stable
Richard Levitte [Thu, 5 Dec 2002 01:18:41 +0000 (01:18 +0000)]
Recent changes from 0.9.6-stable

21 years agoIf an application supports static locks, it MUST support dynamic locks as
Richard Levitte [Thu, 5 Dec 2002 00:57:41 +0000 (00:57 +0000)]
If an application supports static locks, it MUST support dynamic locks as
well to be able to use the CHIL engine.
PR: 281

21 years agoSupported REF_PRINT with specified reference counter
Richard Levitte [Thu, 5 Dec 2002 00:56:41 +0000 (00:56 +0000)]
Supported REF_PRINT with specified reference counter

21 years agoPR: 381
Richard Levitte [Thu, 5 Dec 2002 00:14:08 +0000 (00:14 +0000)]
PR: 381

21 years agoRecent changes from 0.9.6-stable
Richard Levitte [Tue, 3 Dec 2002 23:23:11 +0000 (23:23 +0000)]
Recent changes from 0.9.6-stable

21 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Mon, 2 Dec 2002 03:01:52 +0000 (03:01 +0000)]
Recent changes from 0.9.6-stable.

22 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Thu, 28 Nov 2002 12:26:05 +0000 (12:26 +0000)]
Recent changes from 0.9.6-stable.

22 years agoThis commit was manufactured by cvs2svn to create branch 'OpenSSL-engine-
cvs2svn [Wed, 27 Nov 2002 12:24:08 +0000 (12:24 +0000)]
This commit was manufactured by cvs2svn to create branch 'OpenSSL-engine-
0_9_6-stable'.

22 years agoAdd OPENSSL_cleanse() to help cleanse memory and avoid certain compiler
Richard Levitte [Wed, 27 Nov 2002 12:24:05 +0000 (12:24 +0000)]
Add OPENSSL_cleanse() to help cleanse memory and avoid certain compiler
and linker optimizations.
PR: 343

22 years agoI forgot that @ in strings must be escaped in Perl
Richard Levitte [Tue, 26 Nov 2002 15:27:05 +0000 (15:27 +0000)]
I forgot that @ in strings must be escaped in Perl

22 years agoThe logic in the main signing and verifying functions to check lengths was
Richard Levitte [Tue, 26 Nov 2002 11:14:32 +0000 (11:14 +0000)]
The logic in the main signing and verifying functions to check lengths was
incorrect.  Fortunately, there is a second check that's correct, when adding
the pads.
PR: 355

22 years agoHeimdal isn't really supported right now. Say so, and offer a possibility
Richard Levitte [Tue, 26 Nov 2002 10:11:58 +0000 (10:11 +0000)]
Heimdal isn't really supported right now.  Say so, and offer a possibility
to force the use of Heimdal, and warn if that's used.
PR: 346

22 years agoSmall bugfixes to the KSSL implementation.
Richard Levitte [Tue, 26 Nov 2002 10:09:36 +0000 (10:09 +0000)]
Small bugfixes to the KSSL implementation.
PR: 349

22 years agoHeimdal isn't really supported right now. Say so, and offer a possibility
Richard Levitte [Tue, 26 Nov 2002 09:19:17 +0000 (09:19 +0000)]
Heimdal isn't really supported right now.  Say so, and offer a possibility
to force the use of Heimdal, and warn if that's used.
PR: 346

22 years agorename some functions to improve consistency
Bodo Möller [Sat, 23 Nov 2002 18:16:09 +0000 (18:16 +0000)]
rename some functions to improve consistency

Submitted by: Sheueling Chang

22 years agoadd a comment
Bodo Möller [Fri, 22 Nov 2002 09:25:35 +0000 (09:25 +0000)]
add a comment

22 years agoDisable this module if OPENSSL_NO_SOCK is defined.
Richard Levitte [Fri, 22 Nov 2002 08:45:20 +0000 (08:45 +0000)]
Disable this module if OPENSSL_NO_SOCK is defined.

22 years agoTypo. OPENSSL_NO_ECDH, not NO_OPENSSL_ECDH
Richard Levitte [Fri, 22 Nov 2002 08:40:34 +0000 (08:40 +0000)]
Typo.  OPENSSL_NO_ECDH, not NO_OPENSSL_ECDH

22 years agoMention a current showstopper
Richard Levitte [Thu, 21 Nov 2002 22:39:08 +0000 (22:39 +0000)]
Mention a current showstopper

22 years agoavoid uninitialized memory read
Bodo Möller [Wed, 20 Nov 2002 10:55:27 +0000 (10:55 +0000)]
avoid uninitialized memory read

Submitted by: Nils Larsch

22 years agoMake ec_GFp_simple_point_get_affine_coordinates() faster
Bodo Möller [Wed, 20 Nov 2002 10:53:33 +0000 (10:53 +0000)]
Make ec_GFp_simple_point_get_affine_coordinates() faster
for Montgomery representations.

Submitted by: Sheueling Chang, Bodo Moeller

22 years agoFix bug introduced by the attempt to fix client side external session
Lutz Jänicke [Wed, 20 Nov 2002 10:48:58 +0000 (10:48 +0000)]
Fix bug introduced by the attempt to fix client side external session
caching (#288): now internal caching failed (#351):
Make sure, that cipher_id is set before comparing.
Submitted by:
Reviewed by:
PR: 288 (and 351)

22 years agoallocate bio_err before memory debugging is enabled to avoid memory leaks
Bodo Möller [Tue, 19 Nov 2002 11:56:05 +0000 (11:56 +0000)]
allocate bio_err before memory debugging is enabled to avoid memory leaks
(we can't release it before the CRYPTO_mem_leaks() call!)

Submitted by: Nils Larsch

22 years agoIt works on my laptop :-).
Richard Levitte [Tue, 19 Nov 2002 11:52:24 +0000 (11:52 +0000)]
It works on my laptop :-).

22 years agomake update
Richard Levitte [Tue, 19 Nov 2002 11:40:14 +0000 (11:40 +0000)]
make update

22 years agoFix an unsigned/signed mismatch.
Richard Levitte [Tue, 19 Nov 2002 11:28:28 +0000 (11:28 +0000)]
Fix an unsigned/signed mismatch.

22 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Tue, 19 Nov 2002 10:23:29 +0000 (10:23 +0000)]
Recent changes from 0.9.6-stable.

22 years agoUpdate STATUS
Richard Levitte [Tue, 19 Nov 2002 09:34:34 +0000 (09:34 +0000)]
Update STATUS

22 years agoAdd news items for 0.9.6h and expand on the 0.9.7 news as well.
Richard Levitte [Mon, 18 Nov 2002 23:58:24 +0000 (23:58 +0000)]
Add news items for 0.9.6h and expand on the 0.9.7 news as well.

22 years agoDocument the addition of certificate pairs.
Richard Levitte [Mon, 18 Nov 2002 23:56:15 +0000 (23:56 +0000)]
Document the addition of certificate pairs.

22 years agoAdd the ASN.1 structures and functions for CertificatePair, which is
Richard Levitte [Mon, 18 Nov 2002 23:54:27 +0000 (23:54 +0000)]
Add the ASN.1 structures and functions for CertificatePair, which is
defined as follows (according to X.509_4thEditionDraftV6.pdf):

CertificatePair ::= SEQUENCE {
forward [0] Certificate OPTIONAL,
reverse [1] Certificate OPTIONAL,
-- at least one of the pair shall be present -- }

The only thing I'm not sure about is if it's implicit or explicit tags
that I should count on.  For now, I'm thinking explicit, but will
gladly stand corrected.

Also implement the PEM functions to read and write certificate pairs,
and defined the PEM tag as "CERTIFICATE PAIR".

This needed to be defined, mostly for the sake of the LDAP attribute
crossCertificatePair, but may prove useful elsewhere as well.

22 years agoDetermine HZ exactly as in apps/speed.c.
Richard Levitte [Mon, 18 Nov 2002 23:06:36 +0000 (23:06 +0000)]
Determine HZ exactly as in apps/speed.c.

22 years agoMake sure sysconf exists (it doesn't in the VMS C RTL lesser than version 7).
Richard Levitte [Mon, 18 Nov 2002 23:05:39 +0000 (23:05 +0000)]
Make sure sysconf exists (it doesn't in the VMS C RTL lesser than version 7).

22 years agoremove redundant functions
Bodo Möller [Mon, 18 Nov 2002 14:37:35 +0000 (14:37 +0000)]
remove redundant functions

22 years agouse consistent order of function definitions
Bodo Möller [Mon, 18 Nov 2002 14:33:39 +0000 (14:33 +0000)]
use consistent order of function definitions

22 years agofix memory leak in memory debuggin code ...
Bodo Möller [Mon, 18 Nov 2002 14:00:42 +0000 (14:00 +0000)]
fix memory leak in memory debuggin code ...

Submitted by: Nils Larsch

22 years agoallocate bio_err before memory debugging is enabled to avoid memory leaks
Bodo Möller [Mon, 18 Nov 2002 13:37:40 +0000 (13:37 +0000)]
allocate bio_err before memory debugging is enabled to avoid memory leaks
(we can't release it before the CRYPTO_mem_leaks() call!)

Submitted by: Nils Larsch

22 years agoA variable of type time_t is supposed to be a time measurement starting at
Richard Levitte [Mon, 18 Nov 2002 13:04:08 +0000 (13:04 +0000)]
A variable of type time_t is supposed to be a time measurement starting at
Epoch.  offset isn't such a measurement, so let's stop pretend it is.

22 years agoBetter workaround to the "=head1 NAME OPTIONS" pod2latex problem:
Lutz Jänicke [Mon, 18 Nov 2002 08:15:45 +0000 (08:15 +0000)]
Better workaround to the "=head1 NAME OPTIONS" pod2latex problem:
NAME OPTIONS are a subset of OPTIONS, so just make it =head2!
Submitted by:
Reviewed by:
PR: 333

22 years agoMake it possible to build for more than one CPU.
Richard Levitte [Sun, 17 Nov 2002 19:48:19 +0000 (19:48 +0000)]
Make it possible to build for more than one CPU.
Clarify what the CE tests do.

22 years agoIgnore openssl.pc. This way, there's no risk that I'll add it again :-).
Richard Levitte [Sun, 17 Nov 2002 08:07:08 +0000 (08:07 +0000)]
Ignore openssl.pc.  This way, there's no risk that I'll add it again :-).

22 years agoAdding openssl.pc to the repository was a mistake,
Richard Levitte [Sun, 17 Nov 2002 08:05:38 +0000 (08:05 +0000)]
Adding openssl.pc to the repository was a mistake,
since it's generated.

22 years agoAdd the file openssl.pc that I forgot a while ago.
Richard Levitte [Sun, 17 Nov 2002 08:03:24 +0000 (08:03 +0000)]
Add the file openssl.pc that I forgot a while ago.

22 years agoI forgot this is compiled in test/, not crypto/ec/...
Richard Levitte [Sat, 16 Nov 2002 10:10:39 +0000 (10:10 +0000)]
I forgot this is compiled in test/, not crypto/ec/...

22 years agoWe don't want TARGETCPU expanded here.
Richard Levitte [Sat, 16 Nov 2002 09:42:04 +0000 (09:42 +0000)]
We don't want TARGETCPU expanded here.

22 years agoMention ActiveState Perl much earlier in INSTALL.WCE.
Richard Levitte [Fri, 15 Nov 2002 22:54:13 +0000 (22:54 +0000)]
Mention ActiveState Perl much earlier in INSTALL.WCE.

22 years agoWinCE patches
Richard Levitte [Fri, 15 Nov 2002 22:37:18 +0000 (22:37 +0000)]
WinCE patches

22 years agoFix buggy #! magic and update ssleay->openssl
Lutz Jänicke [Fri, 15 Nov 2002 21:26:42 +0000 (21:26 +0000)]
Fix buggy #! magic and update ssleay->openssl
Submitted by:
Reviewed by:
PR: 305

22 years agoAdd the INHIBIT_SYMLINKS flag variable to help Cygwin.
Richard Levitte [Fri, 15 Nov 2002 16:56:36 +0000 (16:56 +0000)]
Add the INHIBIT_SYMLINKS flag variable to help Cygwin.
Add missing semicolons.
Add a comment explaining a bunch of targets without any action lines.

22 years agoChanges to make shared library building and use work better with Cygwin
Richard Levitte [Fri, 15 Nov 2002 16:48:38 +0000 (16:48 +0000)]
Changes to make shared library building and use work better with Cygwin

22 years agoDocument the change to remove the 'done' flag variable in the
Richard Levitte [Fri, 15 Nov 2002 13:58:11 +0000 (13:58 +0000)]
Document the change to remove the 'done' flag variable in the
OpenSSL_add_all_*() routines

22 years agoRecent changes from 0.9.6-stable.
Richard Levitte [Fri, 15 Nov 2002 13:57:00 +0000 (13:57 +0000)]
Recent changes from 0.9.6-stable.

22 years agothis method does not need field_data1
Bodo Möller [Fri, 15 Nov 2002 12:43:15 +0000 (12:43 +0000)]
this method does not need field_data1

22 years agomake update
Richard Levitte [Fri, 15 Nov 2002 11:20:43 +0000 (11:20 +0000)]
make update

22 years ago(almost) recent changes from 0.9.6-stable.
Richard Levitte [Fri, 15 Nov 2002 11:19:28 +0000 (11:19 +0000)]
(almost) recent changes from 0.9.6-stable.

22 years agoA few more Microsoft OIDs added
Richard Levitte [Fri, 15 Nov 2002 11:17:50 +0000 (11:17 +0000)]
A few more Microsoft OIDs added

22 years agoThe pointer to the cipher object is not yet set, when session was reloaded
Lutz Jänicke [Fri, 15 Nov 2002 10:53:33 +0000 (10:53 +0000)]
The pointer to the cipher object is not yet set, when session was reloaded
from external cache (using d2i_SSL_SESSION). Perform comparison based on
the cipher's id instead.
Submitted by: Steve Haslam <araqnid@innocent.com>
Reviewed by:
PR: 288

22 years agoThe architecture name is i486, not just 486
Richard Levitte [Fri, 15 Nov 2002 10:28:28 +0000 (10:28 +0000)]
The architecture name is i486, not just 486

22 years ago-Wid-clash-n isn't support in gcc 3, and I get better result from continuously
Richard Levitte [Fri, 15 Nov 2002 10:19:23 +0000 (10:19 +0000)]
-Wid-clash-n isn't support in gcc 3, and I get better result from continuously
rebuilding on a VMS box.

22 years agoI know ANSI C doesn't like 'long long', and I don't want to see it
Richard Levitte [Fri, 15 Nov 2002 10:15:56 +0000 (10:15 +0000)]
I know ANSI C doesn't like 'long long', and I don't want to see it

22 years agoSpell prototypes correctly :-).
Richard Levitte [Fri, 15 Nov 2002 09:56:01 +0000 (09:56 +0000)]
Spell prototypes correctly :-).

22 years agoAdd -Wstrict-prototype and -Wmissing-prototype to my debugging targets
Richard Levitte [Fri, 15 Nov 2002 09:53:46 +0000 (09:53 +0000)]
Add -Wstrict-prototype and -Wmissing-prototype to my debugging targets

22 years agoWe need to read one more byte of the REQUEST-CERTIFICATE message.
Richard Levitte [Fri, 15 Nov 2002 09:15:55 +0000 (09:15 +0000)]
We need to read one more byte of the REQUEST-CERTIFICATE message.
PR: 300

22 years agoAdd SETWRAP modifier to ASN1 generate.
Dr. Stephen Henson [Fri, 15 Nov 2002 00:26:07 +0000 (00:26 +0000)]
Add SETWRAP modifier to ASN1 generate.

22 years agomake update
Richard Levitte [Thu, 14 Nov 2002 23:56:12 +0000 (23:56 +0000)]
make update

22 years agoClose the implicitely opened registry key.
Richard Levitte [Thu, 14 Nov 2002 23:33:28 +0000 (23:33 +0000)]
Close the implicitely opened registry key.
PR: 264

22 years agoUse =back to finish =over (found using pod2latex).
Lutz Jänicke [Thu, 14 Nov 2002 21:50:30 +0000 (21:50 +0000)]
Use =back to finish =over (found using pod2latex).
Submitted by:
Reviewed by:
PR:

22 years agoNo such reference to link to (found running pod2latex).
Lutz Jänicke [Thu, 14 Nov 2002 21:41:54 +0000 (21:41 +0000)]
No such reference to link to (found running pod2latex).
Submitted by:
Reviewed by:
PR: