1. 59c6f2e Avoid nested if's without braces. by Manuel Pégourié-Gonnard · 10 years ago
  2. 5d9cde2 Move renego SCSV after actual ciphersuites by Manuel Pégourié-Gonnard · 10 years ago
  3. 5b8f7ea Merge new security defaults for programs (RC4 disabled, SSL3 disabled) by Paul Bakker · 10 years ago
  4. 36adc36 Merge support for getrandom() call by Paul Bakker · 10 years ago
  5. c82b7e2 Merge option to disable truncated hmac on the server-side by Paul Bakker · 10 years ago
  6. e522d0f Merge smarter certificate selection for pre-TLS-1.2 clients by Paul Bakker · 10 years ago
  7. a852cf4 Fix issue with non-blocking I/O & record splitting by Manuel Pégourié-Gonnard · 10 years ago
  8. d5746b3 Fix warning by Manuel Pégourié-Gonnard · 10 years ago
  9. f356115 Merge support for 1/n-1 record splitting by Paul Bakker · 10 years ago
  10. f6080b8 Merge support for enabling / disabling renegotiation support at compile-time by Paul Bakker · 10 years ago
  11. d7e2483 Merge miscellaneous fixes into development by Paul Bakker · 10 years ago
  12. 5dd28ea Fix len miscalculation in buffer-based allocator by Manuel Pégourié-Gonnard · 10 years ago
  13. 547ff66 Fix NULL dereference in buffer-based allocator by Manuel Pégourié-Gonnard · 10 years ago
  14. 5ba1d52 Add memory_buffer_alloc_self_test() by Manuel Pégourié-Gonnard · 10 years ago
  15. 5cb4b31 Fix missing bound check by Manuel Pégourié-Gonnard · 10 years ago
  16. bd47a58 Add ssl_set_arc4_support() by Manuel Pégourié-Gonnard · 10 years ago
  17. 352143f Refactor for clearer correctness/security by Manuel Pégourié-Gonnard · 10 years ago
  18. 1829245 Add support for getrandom() by Manuel Pégourié-Gonnard · 10 years ago
  19. e117a8f Make truncated hmac a runtime option server-side by Manuel Pégourié-Gonnard · 10 years ago
  20. f01768c Specific error for suites in common but none good by Manuel Pégourié-Gonnard · 10 years ago
  21. df331a5 Prefer SHA-1 certificates for pre-1.2 clients by Manuel Pégourié-Gonnard · 10 years ago
  22. 6458e3b Some more refactoring/tuning. by Manuel Pégourié-Gonnard · 10 years ago
  23. 846ba47 Minor refactoring by Manuel Pégourié-Gonnard · 10 years ago
  24. cfa477e Allow disabling record splitting at runtime by Manuel Pégourié-Gonnard · 10 years ago
  25. d76314c Add 1/n-1 record splitting by Manuel Pégourié-Gonnard · 10 years ago
  26. d942323 Skip signature_algorithms ext if PSK only by Manuel Pégourié-Gonnard · 10 years ago
  27. eaecbd3 Fix warning in reduced configs by Manuel Pégourié-Gonnard · 10 years ago
  28. 837f0fe Make renego period configurable by Manuel Pégourié-Gonnard · 10 years ago
  29. b445805 Auto-renegotiate before sequence number wrapping by Manuel Pégourié-Gonnard · 10 years ago
  30. 6186019 Save 48 bytes if SSLv3 is not defined by Manuel Pégourié-Gonnard · 10 years ago
  31. 615e677 Make renegotiation a compile-time option by Manuel Pégourié-Gonnard · 10 years ago
  32. 60346be Improve debugging message. by Manuel Pégourié-Gonnard · 10 years ago
  33. e423246 Fix net_usleep for durations greater than 1 second by Manuel Pégourié-Gonnard · 10 years ago
  34. 9439f93 Use pk_load_file() in X509 by Manuel Pégourié-Gonnard · 10 years ago
  35. 2457fa0 Create ticket keys only if enabled by Manuel Pégourié-Gonnard · 10 years ago
  36. d16d1cb Use more #ifdef's on CLI_C and SRV_C in ssl_tls.c by Manuel Pégourié-Gonnard · 10 years ago
  37. fd6c85c Set a compile-time limit to X.509 chain length by Manuel Pégourié-Gonnard · 10 years ago
  38. 6ed2d92 Make x509_crl_parse() iterative by Manuel Pégourié-Gonnard · 10 years ago
  39. 426d4ae Split x509_crl_parse_der() out of x509_crl_parse() by Manuel Pégourié-Gonnard · 10 years ago
  40. 8c9223d Add text view to debug_print_buf() by Manuel Pégourié-Gonnard · 10 years ago
  41. 8e4b337 Fix some more warnings in reduced configs by Manuel Pégourié-Gonnard · 10 years ago
  42. 98aa191 Adjust warnings in different modes by Manuel Pégourié-Gonnard · 10 years ago
  43. e5b0fc1 Make malloc-init script a bit happier by Manuel Pégourié-Gonnard · 10 years ago
  44. f631bbc Make x509_string_cmp() iterative by Manuel Pégourié-Gonnard · 10 years ago
  45. 8a5e3d4 Forbid repeated X.509 extensions by Manuel Pégourié-Gonnard · 10 years ago
  46. d681443 Fix potential stack overflow by Manuel Pégourié-Gonnard · 10 years ago
  47. b134060 Fix memory leak with crafted X.509 certs by Manuel Pégourié-Gonnard · 10 years ago
  48. 0369a52 Fix uninitialised pointer dereference by Manuel Pégourié-Gonnard · 10 years ago
  49. e959979 Fix ECDSA sign buffer size by Manuel Pégourié-Gonnard · 10 years ago
  50. b31b61b Fix potential undefined behaviour in Camellia by Manuel Pégourié-Gonnard · 10 years ago
  51. 7c13d69 Fix dependency issues by Manuel Pégourié-Gonnard · 10 years ago
  52. a1efcb0 Implement pk_check_pair() for RSA-alt by Manuel Pégourié-Gonnard · 10 years ago
  53. 27e3edb Check key/cert pair in ssl_set_own_cert() by Manuel Pégourié-Gonnard · 10 years ago
  54. 70bdadf Add pk_check_pair() by Manuel Pégourié-Gonnard · 10 years ago
  55. 30668d6 Add ecp_check_pub_priv() by Manuel Pégourié-Gonnard · 10 years ago
  56. 2f8d1f9 Add rsa_check_pub_priv() by Manuel Pégourié-Gonnard · 10 years ago
  57. e10e06d Blind RSA operations even without CRT by Manuel Pégourié-Gonnard · 10 years ago
  58. d056ce0 Use seq_num as AEAD nonce by default by Manuel Pégourié-Gonnard · 10 years ago
  59. 9d7821d Fix warning in reduced config by Manuel Pégourié-Gonnard · 10 years ago
  60. 1a03473 Keep EtM state across renegotiations by Manuel Pégourié-Gonnard · 10 years ago
  61. 169dd6a Adjust minimum length for EtM by Manuel Pégourié-Gonnard · 10 years ago
  62. 78e745f Don't send back EtM extension if not using CBC by Manuel Pégourié-Gonnard · 10 years ago
  63. 08558e5 Fix for the RFC erratum by Manuel Pégourié-Gonnard · 10 years ago
  64. 313d796 Implement EtM by Manuel Pégourié-Gonnard · 10 years ago
  65. 0098e7d Preparation for EtM by Manuel Pégourié-Gonnard · 10 years ago
  66. 699cafa Implement initial negotiation of EtM by Manuel Pégourié-Gonnard · 10 years ago
  67. b575b54 Forbid extended master secret with SSLv3 by Manuel Pégourié-Gonnard · 10 years ago
  68. ada3030 Implement extended master secret by Manuel Pégourié-Gonnard · 10 years ago
  69. 367381f Add negotiation of Extended Master Secret by Manuel Pégourié-Gonnard · 10 years ago
  70. 01b2699 Implement FALLBACK_SCSV server-side by Manuel Pégourié-Gonnard · 10 years ago
  71. 1cbd39d Implement FALLBACK_SCSV client-side by Manuel Pégourié-Gonnard · 10 years ago
  72. 82788fb Fix minor style issues by Paul Bakker · 10 years ago polarssl-1.3.9
  73. 9eac4f7 Prepare for release 1.3.9 by Paul Bakker · 10 years ago
  74. f7cdbc0 Fix potential bad read of length by Manuel Pégourié-Gonnard · 10 years ago
  75. ef9a6ae Allow comparing name with mismatched encodings by Manuel Pégourié-Gonnard · 10 years ago
  76. 8842124 Rename a function by Manuel Pégourié-Gonnard · 10 years ago
  77. 43c3b28 Fix memory leak with crafted ClientHello by Manuel Pégourié-Gonnard · 10 years ago
  78. 5d86185 Fix memory leak while parsing some X.509 certs by Manuel Pégourié-Gonnard · 10 years ago
  79. 64938c6 Accept spaces at end of line/buffer in base64 by Manuel Pégourié-Gonnard · 10 years ago
  80. 7f4ed67 Fix compile error with armcc in mpi_is_prime() by Manuel Pégourié-Gonnard · 10 years ago
  81. 5a5fa92 x509_crt_parse() did not increase total_failed on PEM error by Paul Bakker · 10 years ago
  82. 480905d Fix selection of hash from sig_alg ClientHello ext. by Manuel Pégourié-Gonnard · 10 years ago
  83. ef5087d Added explicit casts to prevent compiler warnings when trying to build for iOS by Sander Niemeijer · 10 years ago
  84. 8ef7088 Use polarssl_zeroize() in asn1parse too by Manuel Pégourié-Gonnard · 10 years ago
  85. a676acf Fix missing curly braces. by Peter Vaskovic · 10 years ago
  86. a13500f Fix bug with ssl_close_notify and non-blocking I/O by Manuel Pégourié-Gonnard · 10 years ago
  87. 44ade65 Implement (partial) renego delay on client by Manuel Pégourié-Gonnard · 10 years ago
  88. f07f421 Fix server-initiated renego with non-blocking I/O by Manuel Pégourié-Gonnard · 10 years ago
  89. 6591962 Allow delay on renego on client by Manuel Pégourié-Gonnard · 10 years ago
  90. f26a1e8 ssl_read() stops returning non-application data by Manuel Pégourié-Gonnard · 10 years ago
  91. 55e4ff2 Tune comments by Manuel Pégourié-Gonnard · 10 years ago
  92. 462906f Do no test net_usleep() when not defined by Manuel Pégourié-Gonnard · 10 years ago
  93. 192253a Fix buffer size in pk_write_*_pem() by Manuel Pégourié-Gonnard · 10 years ago
  94. b308dd7 timing.c: avoid referencing garbage value by Alfred Klomp · 10 years ago
  95. 7ee5562 gcm.c: remove dead store by Alfred Klomp · 10 years ago
  96. 1b4eda3 pkcs5.c: fix dead store: return proper exit status by Alfred Klomp · 10 years ago
  97. 8d77eee Fix integer suffix rejected by some MSVC versions by Manuel Pégourié-Gonnard · 10 years ago
  98. 9a6b442 Fix non-blocking sockets in net_accept() by Manuel Pégourié-Gonnard · 10 years ago
  99. a04fa4f RSA-PSK key exchange requires TLS 1.x by Manuel Pégourié-Gonnard · 10 years ago
  100. 8d4ad07 SHA-2 ciphersuites now require TLS 1.x by Manuel Pégourié-Gonnard · 10 years ago