Paul Bakker
332166eeda
Added comments to indicate dependency from PEM on AES, DES and MD5
...
(cherry picked from commit 6deb37e03e698b081afcfa6feb655440eeb3cd5a)
Conflicts:
include/polarssl/config.h
2013-03-11 16:04:49 +01:00
Paul Bakker
6c04475bfc
Fixed typo in base64.h
...
(cherry picked from commit fbb5cf9f59bde4e2dad064759a45fbfe186b46a4)
2013-03-11 16:04:04 +01:00
Paul Bakker
9fa6ea7cdf
Fixed comment
...
(cherry picked from commit 86f04f400b3ce789b2a1105da1d42c39c69e47c5)
2013-03-11 16:03:35 +01:00
Paul Bakker
48b7cb8ea2
Disable debug messages that can introduce a timing side channel.
...
Introduced the POLARSSL_SSL_DEBUG_ALL flag to enable all these debug
messages in case somebody does want to see the reason checks fail.
(cherry picked from commit d66f070d492ef75405baad9f0d018b1bd06862c8)
Conflicts:
include/polarssl/config.h
library/ssl_tls.c
2013-03-11 15:59:03 +01:00
Paul Bakker
6a229c1f8c
Fixed timing difference resulting from badly formatted padding.
...
(cherry picked from commit 4582999be608c9794d4518ae336b265084db9f93)
Conflicts:
ChangeLog
library/ssl_tls.c
2013-03-11 15:56:17 +01:00
Paul Bakker
cb60e7c065
Allow enabling of dummy error_strerror() to support some use-cases
...
Enable a dummy error function to make use of error_strerror() in
third party libraries easier.
Disable if you run into name conflicts and want to really remove the
error_strerror()
(cherry picked from commit 8fe40dcd7d3b46193f74032361efb674112ee9e5)
Conflicts:
ChangeLog
programs/util/strerror.c
2013-03-11 15:50:35 +01:00
Paul Bakker
66a531b014
Bumped version numbers to 1.1.5
polarssl-1.1.5
2013-01-16 14:06:28 +01:00
Paul Bakker
9406c12b1b
Fixed typo
2013-01-16 14:02:02 +01:00
Paul Bakker
cf45a56631
Fixes for MSVC6
...
(cherry picked from commit 7a2538ee38f6fde58bc6d3eb45624a5ac8eeaa30)
2013-01-16 13:38:20 +01:00
Paul Bakker
5f5593a30e
Handle encryption with private key and decryption with public key as per RFC 2313
...
(cherry picked from commit e6ee41f932f71e86b2d33a9ed12ba4e3d172b1ca)
2013-01-16 13:26:56 +01:00
Paul Bakker
c048493374
Memory leak when using RSA_PKCS_V21 operations fixed
...
(cherry picked from commit 40628bad98973fb7270b6822924086c4d27b3b79 and
from commit 02303e8be478dc8836093331bde1341936ce1dc9)
2013-01-16 13:16:09 +01:00
Paul Bakker
5aef1e10f9
Fixed comments / typos
...
(cherry picked from commit 096348fa7984bb86201c50d8e8e030059af2fb6d)
2013-01-16 13:16:09 +01:00
Paul Bakker
089b70d5a6
Fixed doxygen blocks
...
(cherry picked from commit 77db6ce3481ad610ee786d5ab171d5d10c1cb59d)
2013-01-16 13:16:09 +01:00
Paul Bakker
144c3cc8ab
Added max length check for rsa_pkcs1_sign with PKCS#1 v2.1
...
(cherry picked from commit 9daf0d0651d6346f6f21b6bce9797c626c88f24f)
2013-01-16 13:16:00 +01:00
Paul Bakker
0ae1f40299
Allow R and A to point to same mpi in mpi_div_mpi
...
(cherry picked from commit f02c5642d0f19281e7c30d849bf8cd94703a9bd5 and
from commit 50546921ac8250d1884c41fd9dc7a645007d4103)
2013-01-16 13:03:46 +01:00
Manuel Pégourié-Gonnard
f173e0ac74
Fixed segfault in mpi_shift_r(), Fixed memory leak in test_suite_mpi
...
(cherry picked from commit e44ec108bea03837fa72714ca33e6dc557c1189b)
2013-01-16 12:52:17 +01:00
Paul Bakker
d8ee8440a7
mpi_exp_mod() now correctly handles negative base numbers (Closes ticket #52 )
...
(cherry picked from commit f6198c1513edcb44e7edb96fc82e3a5549a4bdc3)
2013-01-16 12:51:13 +01:00
Paul Bakker
7261cbaa91
Better checking for reading over buffer boundaries
...
(Partial cherry picked from commit 535e97dbab8cf34bb1e487f0f0f169a04eb9921f)
2013-01-16 12:44:01 +01:00
Paul Bakker
087e0379c5
Moved mpi_inv_mod() outside POLARSSL_GENPRIME
...
(cherry picked from commit d9374b05d67ca1abcfe0f6b289b6583b6257eee3)
Conflicts:
ChangeLog
2013-01-14 17:57:13 +01:00
Paul Bakker
b3351bd98e
Added regression check for latest mpi_add_abs() issue
...
(cherry picked from commit 17a97909188bb529acf7fa2db2d582e7b489b89e)
2013-01-14 17:36:54 +01:00
Paul Bakker
bdaf68a492
Added bug to ChangeLog
...
(cherry picked from commit d4c2bd79fe61e466f07977b4b53b33c1dae93648)
Conflicts:
ChangeLog
2013-01-14 17:36:53 +01:00
Paul Bakker
ebee076da6
Fixed bug in mpi_add_abs with adding a small number to a large mpi with carry rollover.
...
(cherry picked from commit 2d319fdfcb36d53a733293904a5bf42775332fed)
2013-01-14 17:36:52 +01:00
Paul Bakker
badc9bce1c
Fixed test for 'trust extension' change
...
(cherry picked from commit 1a0f5520303f34c0faaf0e4be4403d5e43173e58)
2013-01-14 17:36:51 +01:00
Paul Bakker
47f626184c
Handle existence of OpenSSL Trust Extensions at end of X.509 DER blob
...
(cherry picked from commit b00ca42f2a26133172d9df9304bfbc9b093a43dc)
Conflicts:
ChangeLog (Moved message to 'Branch 1.1')
2013-01-14 17:36:49 +01:00
Paul Bakker
a4ed0c9a76
Fixed for SPARC64
...
(cherry picked from commit 4f024b7ba9b472d1ec80b05cec49e8d41c370aa3)
Conflicts:
ChangeLog (Moved to 'Branch 1.1')
2013-01-14 17:36:48 +01:00
Paul Bakker
0ea57e8c7a
Fixed potential memory zeroization on miscrafted RSA key
...
(cherry picked from commit 3c16db9a10a3087e1611cd8ffb9ca564c0e9cf60)
Conflicts:
ChangeLog (Moved message to 'Branch 1.1')
2013-01-14 17:36:47 +01:00
Paul Bakker
9a120fd4f7
Added proper gitignores for Linux CMake use
...
(cherry picked from commit 25338d74aca14571ad1bb7c549071544a86d466b)
2013-01-14 17:36:45 +01:00
Paul Bakker
ff47dec89d
Added proper gitignores for linux compilation
...
(cherry picked from commit 90f309ffe784daa69568ac688b0bd6c118d4e2e0)
2013-01-14 17:36:39 +01:00
Paul Bakker
d36da11125
Version 1.1.4
polarssl-1.1.4
2012-05-31 10:46:28 +00:00
Paul Bakker
8639578f58
- Correctly handle empty packets (Found by James Yonan)
2012-05-30 07:39:36 +00:00
Paul Bakker
ce30bdf624
- Fixed single RSA test that failed on Big Endian systems (Closes ticket #54 )
2012-05-30 07:36:21 +00:00
Paul Bakker
7f113205bf
- Merged 'Fixed potential heap corruption in x509_name allocation' into 1.1 branch
2012-05-30 07:33:49 +00:00
Paul Bakker
0715668eea
2012-05-30 07:33:30 +00:00
Paul Bakker
a63c9e9fba
- Added 1.1.3 changes to 1.1 branch
polarssl-1.1.3
2012-04-29 20:29:53 +00:00
Paul Bakker
662d1686d9
- Fixed random MPI generation to not generate more size than requested.
2012-04-29 20:15:55 +00:00
Paul Bakker
e893b669de
- Updated polarssl-1.1 branch with merged trunk patches
polarssl-1.1.2
2012-04-26 19:30:20 +00:00
Paul Bakker
145e68119b
- Ready for release 1.1.2
2012-04-20 13:58:28 +00:00
Paul Bakker
79e9477d08
2012-04-20 13:41:32 +00:00
Paul Bakker
32356acc4f
- Fixed handling error in mpi_cmp_mpi() on longer B values (found by Hui Dong)
2012-04-20 13:34:52 +00:00
Paul Bakker
e2f8ff6797
- Merged security fixes to 1.1 branch
2012-04-20 13:33:14 +00:00
Paul Bakker
e2e36d31bd
- Merged changes from trunk to PolarSSL 1.1 branch
polarssl-1.1.1
2012-01-23 09:56:51 +00:00
Paul Bakker
d567aa2b6e
- Merged Trunk changes for 1.1 into branch
polarssl-1.1.0
2011-12-22 10:06:27 +00:00
Paul Bakker
732e1a893c
- Merged trunk into 1.1 branch
polarssl-1.1.0-rc1
2011-12-11 16:35:09 +00:00
Paul Bakker
b209de59b7
- Created 1.1 branch and 1.1.0-rc0 release
polarssl-1.1.0-rc0
2011-12-05 14:48:05 +00:00
Paul Bakker
c50132d4fa
- Updated version of PolarSSL to 1.1.0
2011-12-05 14:38:36 +00:00
Paul Bakker
9304880e8a
- Fixed correct printing of serial number '00'
2011-12-05 14:38:06 +00:00
Paul Bakker
b8ba90b316
- Enlarged default CRL size buffer
2011-12-05 14:34:12 +00:00
Paul Bakker
c8ffbe7706
- Corrected removal of leading '00:' in printing serial numbers in certificates and CRLs
2011-12-05 14:22:49 +00:00
Paul Bakker
6bcfc67cd2
- Prevented warning from unused parameter data
2011-12-05 13:54:00 +00:00
Paul Bakker
fc754a9178
- Addedd writing and updating of seedfiles as functions to CTR_DRBG
2011-12-05 13:23:51 +00:00