Rivoreo Source Code Repositories
src.rivoreo.one
/
security
/
mbedtls
/
a9a991633de1ec7dc72c5ec731f4f8a764b3b105
/
library
59c6f2e
Avoid nested if's without braces.
by Manuel Pégourié-Gonnard
· 10 years ago
5d9cde2
Move renego SCSV after actual ciphersuites
by Manuel Pégourié-Gonnard
· 10 years ago
5b8f7ea
Merge new security defaults for programs (RC4 disabled, SSL3 disabled)
by Paul Bakker
· 10 years ago
36adc36
Merge support for getrandom() call
by Paul Bakker
· 10 years ago
c82b7e2
Merge option to disable truncated hmac on the server-side
by Paul Bakker
· 10 years ago
e522d0f
Merge smarter certificate selection for pre-TLS-1.2 clients
by Paul Bakker
· 10 years ago
a852cf4
Fix issue with non-blocking I/O & record splitting
by Manuel Pégourié-Gonnard
· 10 years ago
d5746b3
Fix warning
by Manuel Pégourié-Gonnard
· 10 years ago
f356115
Merge support for 1/n-1 record splitting
by Paul Bakker
· 10 years ago
f6080b8
Merge support for enabling / disabling renegotiation support at compile-time
by Paul Bakker
· 10 years ago
d7e2483
Merge miscellaneous fixes into development
by Paul Bakker
· 10 years ago
5dd28ea
Fix len miscalculation in buffer-based allocator
by Manuel Pégourié-Gonnard
· 10 years ago
547ff66
Fix NULL dereference in buffer-based allocator
by Manuel Pégourié-Gonnard
· 10 years ago
5ba1d52
Add memory_buffer_alloc_self_test()
by Manuel Pégourié-Gonnard
· 10 years ago
5cb4b31
Fix missing bound check
by Manuel Pégourié-Gonnard
· 10 years ago
bd47a58
Add ssl_set_arc4_support()
by Manuel Pégourié-Gonnard
· 10 years ago
352143f
Refactor for clearer correctness/security
by Manuel Pégourié-Gonnard
· 10 years ago
1829245
Add support for getrandom()
by Manuel Pégourié-Gonnard
· 10 years ago
e117a8f
Make truncated hmac a runtime option server-side
by Manuel Pégourié-Gonnard
· 10 years ago
f01768c
Specific error for suites in common but none good
by Manuel Pégourié-Gonnard
· 10 years ago
df331a5
Prefer SHA-1 certificates for pre-1.2 clients
by Manuel Pégourié-Gonnard
· 10 years ago
6458e3b
Some more refactoring/tuning.
by Manuel Pégourié-Gonnard
· 10 years ago
846ba47
Minor refactoring
by Manuel Pégourié-Gonnard
· 10 years ago
cfa477e
Allow disabling record splitting at runtime
by Manuel Pégourié-Gonnard
· 10 years ago
d76314c
Add 1/n-1 record splitting
by Manuel Pégourié-Gonnard
· 10 years ago
d942323
Skip signature_algorithms ext if PSK only
by Manuel Pégourié-Gonnard
· 10 years ago
eaecbd3
Fix warning in reduced configs
by Manuel Pégourié-Gonnard
· 10 years ago
837f0fe
Make renego period configurable
by Manuel Pégourié-Gonnard
· 10 years ago
b445805
Auto-renegotiate before sequence number wrapping
by Manuel Pégourié-Gonnard
· 10 years ago
6186019
Save 48 bytes if SSLv3 is not defined
by Manuel Pégourié-Gonnard
· 10 years ago
615e677
Make renegotiation a compile-time option
by Manuel Pégourié-Gonnard
· 10 years ago
60346be
Improve debugging message.
by Manuel Pégourié-Gonnard
· 10 years ago
e423246
Fix net_usleep for durations greater than 1 second
by Manuel Pégourié-Gonnard
· 10 years ago
9439f93
Use pk_load_file() in X509
by Manuel Pégourié-Gonnard
· 10 years ago
2457fa0
Create ticket keys only if enabled
by Manuel Pégourié-Gonnard
· 10 years ago
d16d1cb
Use more #ifdef's on CLI_C and SRV_C in ssl_tls.c
by Manuel Pégourié-Gonnard
· 10 years ago
fd6c85c
Set a compile-time limit to X.509 chain length
by Manuel Pégourié-Gonnard
· 10 years ago
6ed2d92
Make x509_crl_parse() iterative
by Manuel Pégourié-Gonnard
· 10 years ago
426d4ae
Split x509_crl_parse_der() out of x509_crl_parse()
by Manuel Pégourié-Gonnard
· 10 years ago
8c9223d
Add text view to debug_print_buf()
by Manuel Pégourié-Gonnard
· 10 years ago
8e4b337
Fix some more warnings in reduced configs
by Manuel Pégourié-Gonnard
· 10 years ago
98aa191
Adjust warnings in different modes
by Manuel Pégourié-Gonnard
· 10 years ago
e5b0fc1
Make malloc-init script a bit happier
by Manuel Pégourié-Gonnard
· 10 years ago
f631bbc
Make x509_string_cmp() iterative
by Manuel Pégourié-Gonnard
· 10 years ago
8a5e3d4
Forbid repeated X.509 extensions
by Manuel Pégourié-Gonnard
· 10 years ago
d681443
Fix potential stack overflow
by Manuel Pégourié-Gonnard
· 10 years ago
b134060
Fix memory leak with crafted X.509 certs
by Manuel Pégourié-Gonnard
· 10 years ago
0369a52
Fix uninitialised pointer dereference
by Manuel Pégourié-Gonnard
· 10 years ago
e959979
Fix ECDSA sign buffer size
by Manuel Pégourié-Gonnard
· 10 years ago
b31b61b
Fix potential undefined behaviour in Camellia
by Manuel Pégourié-Gonnard
· 10 years ago
7c13d69
Fix dependency issues
by Manuel Pégourié-Gonnard
· 10 years ago
a1efcb0
Implement pk_check_pair() for RSA-alt
by Manuel Pégourié-Gonnard
· 10 years ago
27e3edb
Check key/cert pair in ssl_set_own_cert()
by Manuel Pégourié-Gonnard
· 10 years ago
70bdadf
Add pk_check_pair()
by Manuel Pégourié-Gonnard
· 10 years ago
30668d6
Add ecp_check_pub_priv()
by Manuel Pégourié-Gonnard
· 10 years ago
2f8d1f9
Add rsa_check_pub_priv()
by Manuel Pégourié-Gonnard
· 10 years ago
e10e06d
Blind RSA operations even without CRT
by Manuel Pégourié-Gonnard
· 10 years ago
d056ce0
Use seq_num as AEAD nonce by default
by Manuel Pégourié-Gonnard
· 10 years ago
9d7821d
Fix warning in reduced config
by Manuel Pégourié-Gonnard
· 10 years ago
1a03473
Keep EtM state across renegotiations
by Manuel Pégourié-Gonnard
· 10 years ago
169dd6a
Adjust minimum length for EtM
by Manuel Pégourié-Gonnard
· 10 years ago
78e745f
Don't send back EtM extension if not using CBC
by Manuel Pégourié-Gonnard
· 10 years ago
08558e5
Fix for the RFC erratum
by Manuel Pégourié-Gonnard
· 10 years ago
313d796
Implement EtM
by Manuel Pégourié-Gonnard
· 10 years ago
0098e7d
Preparation for EtM
by Manuel Pégourié-Gonnard
· 10 years ago
699cafa
Implement initial negotiation of EtM
by Manuel Pégourié-Gonnard
· 10 years ago
b575b54
Forbid extended master secret with SSLv3
by Manuel Pégourié-Gonnard
· 10 years ago
ada3030
Implement extended master secret
by Manuel Pégourié-Gonnard
· 10 years ago
367381f
Add negotiation of Extended Master Secret
by Manuel Pégourié-Gonnard
· 10 years ago
01b2699
Implement FALLBACK_SCSV server-side
by Manuel Pégourié-Gonnard
· 10 years ago
1cbd39d
Implement FALLBACK_SCSV client-side
by Manuel Pégourié-Gonnard
· 10 years ago
82788fb
Fix minor style issues
by Paul Bakker
· 10 years ago
polarssl-1.3.9
9eac4f7
Prepare for release 1.3.9
by Paul Bakker
· 10 years ago
f7cdbc0
Fix potential bad read of length
by Manuel Pégourié-Gonnard
· 10 years ago
ef9a6ae
Allow comparing name with mismatched encodings
by Manuel Pégourié-Gonnard
· 10 years ago
8842124
Rename a function
by Manuel Pégourié-Gonnard
· 10 years ago
43c3b28
Fix memory leak with crafted ClientHello
by Manuel Pégourié-Gonnard
· 10 years ago
5d86185
Fix memory leak while parsing some X.509 certs
by Manuel Pégourié-Gonnard
· 10 years ago
64938c6
Accept spaces at end of line/buffer in base64
by Manuel Pégourié-Gonnard
· 10 years ago
7f4ed67
Fix compile error with armcc in mpi_is_prime()
by Manuel Pégourié-Gonnard
· 10 years ago
5a5fa92
x509_crt_parse() did not increase total_failed on PEM error
by Paul Bakker
· 10 years ago
480905d
Fix selection of hash from sig_alg ClientHello ext.
by Manuel Pégourié-Gonnard
· 10 years ago
ef5087d
Added explicit casts to prevent compiler warnings when trying to build for iOS
by Sander Niemeijer
· 10 years ago
8ef7088
Use polarssl_zeroize() in asn1parse too
by Manuel Pégourié-Gonnard
· 10 years ago
a676acf
Fix missing curly braces.
by Peter Vaskovic
· 10 years ago
a13500f
Fix bug with ssl_close_notify and non-blocking I/O
by Manuel Pégourié-Gonnard
· 10 years ago
44ade65
Implement (partial) renego delay on client
by Manuel Pégourié-Gonnard
· 10 years ago
f07f421
Fix server-initiated renego with non-blocking I/O
by Manuel Pégourié-Gonnard
· 10 years ago
6591962
Allow delay on renego on client
by Manuel Pégourié-Gonnard
· 10 years ago
f26a1e8
ssl_read() stops returning non-application data
by Manuel Pégourié-Gonnard
· 10 years ago
55e4ff2
Tune comments
by Manuel Pégourié-Gonnard
· 10 years ago
462906f
Do no test net_usleep() when not defined
by Manuel Pégourié-Gonnard
· 10 years ago
192253a
Fix buffer size in pk_write_*_pem()
by Manuel Pégourié-Gonnard
· 10 years ago
b308dd7
timing.c: avoid referencing garbage value
by Alfred Klomp
· 10 years ago
7ee5562
gcm.c: remove dead store
by Alfred Klomp
· 10 years ago
1b4eda3
pkcs5.c: fix dead store: return proper exit status
by Alfred Klomp
· 10 years ago
8d77eee
Fix integer suffix rejected by some MSVC versions
by Manuel Pégourié-Gonnard
· 10 years ago
9a6b442
Fix non-blocking sockets in net_accept()
by Manuel Pégourié-Gonnard
· 10 years ago
a04fa4f
RSA-PSK key exchange requires TLS 1.x
by Manuel Pégourié-Gonnard
· 10 years ago
8d4ad07
SHA-2 ciphersuites now require TLS 1.x
by Manuel Pégourié-Gonnard
· 10 years ago
Next »