From 2de9558deaa0df33ce3e0a83021f828b4fad218e Mon Sep 17 00:00:00 2001 From: "Dr. Stephen Henson" Date: Mon, 10 Oct 2011 00:23:14 +0000 Subject: [PATCH] sync NEWS with 1.0.0 branch --- NEWS | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/NEWS b/NEWS index a9c9b78032..672810dcc7 100644 --- a/NEWS +++ b/NEWS @@ -5,6 +5,14 @@ This file gives a brief overview of the major changes between each OpenSSL release. For more details please read the CHANGES file. + Major changes between OpenSSL 1.0.0d and OpenSSL 1.0.0e: + + o Fix for CRL vulnerability issue CVE-2011-3207 + o Fix for ECDH crashes CVE-2011-3210 + o Protection against EC timing attacks. + o Support ECDH ciphersuites for certificates using SHA2 algorithms. + o Various DTLS fixes. + Major changes between OpenSSL 1.0.0c and OpenSSL 1.0.0d: o Fix for security issue CVE-2011-0014 -- 2.25.1