Link [ pkgsrc | NetBSD | pkgsrc git mirror | PR fulltext-search | netbsd commit viewer ]


   
        usage: [branch:branch] [user:user] [path[@revision]] keyword [... [-excludekeyword [...]]] (e.g. branch:MAIN pkgtools/pkg)




switch to index mode

recent branches: MAIN (0m)  pkgsrc-2024Q1 (8d)  pkgsrc-2023Q4 (55d)  pkgsrc-2023Q2 (88d)  pkgsrc-2023Q3 (167d) 

2024-05-26 10:40:15 UTC Now

2016-10-04 11:39:23 UTC MAIN commitmail json YAML

Updated libressl to 2.5.0.

2.5.0 - New APIs, bug fixes and improvements

* libtls now supports ALPN and SNI

* libtls adds a new callback interface for integrating custom IO
  functions. Thanks to Tobias Pape.

* libtls now handles 4 cipher suite groups:
    "secure" (TLSv1.2+AEAD+PFS)
    "compat" (HIGH:!aNULL)
    "legacy" (HIGH:MEDIUM:!aNULL)
    "insecure" (ALL:!aNULL:!eNULL)

    This allows for flexibility and finer grained control, rather than
    having two extremes (an issue raised by Marko Kreen some time ago).

* Tightened error handling for tls_config_set_ciphers().

* libtls now always loads CA, key and certificate files at the time the
  configuration function is called. This simplifies code and results in
  a single memory based code path being used to provide data to libssl.

* Add support for OCSP intermediate certificates.

* Added functions used by stunnel and exim from BoringSSL - this
  brings in X509_check_host, X509_check_email, X509_check_ip, and
  X509_check_ip_asc.

* Added initial support for iOS, thanks to Jacob Berkman.

* Improved behavior of arc4random on Windows when using memory leak
  analysis software.

* Correctly handle an EOF that occurs prior to the TLS handshake
  completing. Reported by Vasily Kolobkov, based on a diff from Marko
  Kreen.

* Limit the support of the "backward compatible" ssl2 handshake to
  only be used if TLS 1.0 is enabled.

* Fix incorrect results in certain cases on 64-bit systems when
  BN_mod_word() can return incorrect results. BN_mod_word() now can
  return an error condition. Thanks to Brian Smith.

* Added constant-time updates to address CVE-2016-0702

* Fixed undefined behavior in BN_GF2m_mod_arr()

* Removed unused Cryptographic Message Support (CMS)

* More conversions of long long idioms to time_t

* Improved compatibility by avoiding printing NULL strings with
  printf.

* Reverted change that cleans up the EVP cipher context in
  EVP_EncryptFinal() and EVP_DecryptFinal(). Some software relies on the
  previous behaviour.

* Avoid unbounded memory growth in libssl, which can be triggered by a
  TLS client repeatedly renegotiating and sending OCSP Status Request
  TLS extensions.

* Avoid falling back to a weak digest for (EC)DH when using SNI with
  libssl.

2.4.2 - Bug fixes and improvements

* Fixed loading default certificate locations with openssl s_client.

* Ensured OSCP only uses and compares GENERALIZEDTIME values as per
  RFC6960. Also added fixes for OCSP to work with intermediate
  certificates provided in responses.

* Improved behavior of arc4random on Windows to not appear to leak
  memory in debug tools, reduced privileges of allocated memory.

* Fixed incorrect results from BN_mod_word() when the modulus is too
  large, thanks to Brian Smith from BoringSSL.

* Correctly handle an EOF prior to completing the TLS handshake in
  libtls.

* Improved libtls ceritificate loading and cipher string validation.

* Updated libtls cipher group suites into four categories:
    "secure"  (TLSv1.2+AEAD+PFS)
    "compat"  (HIGH:!aNULL)
    "legacy"  (HIGH:MEDIUM:!aNULL)
    "insecure" (ALL:!aNULL:!eNULL)
  This allows for flexibility and finer grained control, rather than
  having two extremes.

* Limited support for 'backward compatible' SSLv2 handshake packets to
  when TLS 1.0 is enabled, providing more restricted compatibility
  with TLS 1.0 clients.

* openssl(1) and other documentation improvements.

* Removed flags for disabling constant-time operations.
  This removes support for DSA_FLAG_NO_EXP_CONSTTIME,
  DH_FLAG_NO_EXP_CONSTTIME, and RSA_FLAG_NO_CONSTTIME flags, making
  all of these operations unconditionally constant-time.

2.4.1 - Security fix

* Correct a problem that prevents the DSA signing algorithm from
  running in constant time even if the flag BN_FLG_CONSTTIME is set.
  This issue was reported by Cesar Pereida (Aalto University), Billy
  Brumley (Tampere University of Technology), and Yuval Yarom (The
  University of Adelaide and NICTA). The fix was developed by Cesar
  Pereida.

2.4.0 - Build improvements, new features

* Many improvements to the CMake build infrastructure, including
  Solaris, mingw-w64, Cygwin, and HP-UX support. Thanks to Kinichiro
  Inoguchi for this work.

* Added missing error handling around bn_wexpand() calls.

* Added explicit_bzero calls for freed ASN.1 objects.

* Fixed X509_*set_object functions to return 0 on allocation failure.

* Implemented the IETF ChaCha20-Poly1305 cipher suites.

* Changed default EVP_aead_chacha20_poly1305() implementation to the
  IETF version, which is now the default.

* Fixed password prompts from openssl(1) to properly handle ^C.

* Reworked error handling in libtls so that configuration errors are
  visible.

* Deprecated internal use of EVP_[Cipher|Encrypt|Decrypt]_Final.

* Manpage fixes and updates

(wiz)