1. 4062d6c Add user pointer and data size duplication to ssl context. by shelib01 · 5 years ago
  2. afec885 Revert a part of the sensitive information duplication changes by Andrzej Kurek · 5 years ago
  3. c417c78 Merge pull request #3481 from AndrzejKurek/fi_duplicate_buffers_2 by Andrzej Kurek · 5 years ago
  4. 45e7199 Minor formatting and cosmetic changes by Andrzej Kurek · 5 years ago
  5. ca60937 Add buffer and context clearing upon suspected FI by Andrzej Kurek · 5 years ago
  6. 0919b14 Formatting changes by Andrzej Kurek · 5 years ago
  7. 84bde41 Add FI countermeasures to the ssl module by Andrzej Kurek · 5 years ago
  8. 74f7d0f Duplicate sensitive buffer and buffer length information by Andrzej Kurek · 5 years ago
  9. a24c841 Merge pull request #3439 from piotr-now/fic_switch by Shelly Liberman · 5 years ago
  10. 78fc139 Add FI countermeasures for sensitive switch instructions by Piotr Nowicki · 5 years ago
  11. 77647bd Wrap AES 192 and 256 info structures in !AES_ONLY_128_BIT_KEY_LENGTH by Andrzej Kurek · 5 years ago
  12. 98c847a Merge pull request #3395 from AndrzejKurek/sha-flow_ctrl by Andrzej Kurek · 5 years ago
  13. e5425a0 Merge pull request #3408 from AndrzejKurek/hamming-distance-improvements by Andrzej Kurek · 5 years ago
  14. f523c47 Merge pull request #3403 from piotr-now/sca_memmove by Piotr Nowicki · 5 years ago
  15. ce0aab4 Add new error code PLATFORM_ALLOC_FAILED for mbedtls_platform_memmove() by Piotr Nowicki · 5 years ago
  16. 78f77eb Add flow control to sha256 by Andrzej Kurek · 5 years ago
  17. 5d5841f Add mbedtls_platform_memmove() as a secured memcmp() by Piotr Nowicki · 5 years ago
  18. e048b91 Add returning a FAULT_DETECTED error on suspected FI attacks by Piotr Nowicki · 5 years ago
  19. 8f52a8a Improve the Hamming distance of ssl_hs_is_proper_fragment return values by Andrzej Kurek · 5 years ago
  20. b06ec05 Add comment for mbedtls_platform_random_delay() by Piotr Nowicki · 5 years ago
  21. 478b05c Merge pull request #3355 from AndrzejKurek/fi_error_codes by Andrzej Kurek · 5 years ago
  22. fd56f40 Change the default value of status variables to an error by Andrzej Kurek · 5 years ago
  23. e071e42 Merge pull request #3336 from piotr-now/baremetal_flowmon by Piotr Nowicki · 5 years ago
  24. f0ab6d6 Added some descriptions of functions by Piotr Nowicki · 5 years ago
  25. 13bebd0 Keep SSL context const when hw accel is disabled by Manuel Pégourié-Gonnard · 5 years ago
  26. 731d7c0 Fix lack of cookie check on hard reconnect by Manuel Pégourié-Gonnard · 5 years ago
  27. 4aaa34c Add flow monitor protection to mbedtls_platform_memcmp() by Piotr Nowicki · 5 years ago
  28. 825ebd4 Merge mbedtls 2.16.6 into baremetal by Andrzej Kurek · 5 years ago
  29. f3a1348 Revert "Merge pull request #3012 from Patater/dev/jp-bennett/development-2.16" by Janos Follath · 6 years ago
  30. 8830bd2 Minor comment improvement by Gilles Peskine · 6 years ago
  31. 0660747 Improve comments in mpi_shrink by Gilles Peskine · 6 years ago
  32. 51c2e06 mpi_copy: make the 0 case slightly more robust by Gilles Peskine · 6 years ago
  33. 32b6e69 Parse RSA parameters DP, DQ and QP from PKCS1 private keys by Jack Lloyd · 6 years ago
  34. b9082ed Allow loading symlinked certificates by Jonathan Bennett · 6 years ago
  35. 010efeb Remove redundant block_size validity check by Gilles Peskine · 6 years ago
  36. aa377cf Fix incrementing pointer instead of value by Manuel Pégourié-Gonnard · 6 years ago
  37. 140f502 Add missing return code check on call to mbedtls_md() by Gilles Peskine · 6 years ago
  38. e7b49d3 Bump version to Mbed TLS 2.16.4 by Janos Follath · 6 years ago
  39. 8b7f03f Catch AES failure in mbedtls_ctr_drbg_random by Gilles Peskine · 6 years ago
  40. a840544 Zeroize local AES variables before exiting the function by Andrzej Kurek · 6 years ago
  41. e9db2aa mpi_lt_mpi_ct: fix condition handling by Janos Follath · 6 years ago
  42. 3d2b769 ct_lt_mpi_uint: cast the return value explicitely by Janos Follath · 6 years ago
  43. c8256e7 mbedtls_mpi_lt_mpi_ct: simplify condition by Janos Follath · 6 years ago
  44. ec4c42a Rename variable for better readability by Janos Follath · 6 years ago
  45. cf7eeef mbedtls_mpi_lt_mpi_ct: Improve documentation by Janos Follath · 6 years ago
  46. aa9e7a4 Make mbedtls_mpi_lt_mpi_ct more portable by Janos Follath · 6 years ago
  47. 3480947 Document ct_lt_mpi_uint by Janos Follath · 6 years ago
  48. afa5342 mpi_lt_mpi_ct: make use of unsigned consistent by Janos Follath · 6 years ago
  49. a830377 ct_lt_mpi_uint: make use of biL by Janos Follath · 6 years ago
  50. 8faf1d6 Change mbedtls_mpi_cmp_mpi_ct to check less than by Janos Follath · 6 years ago
  51. 81c9fe5 mbedtls_mpi_cmp_mpi_ct: remove multiplications by Janos Follath · 6 years ago
  52. fd9797b Remove excess vertical space by Janos Follath · 6 years ago
  53. 78ed22b Remove declaration after statement by Janos Follath · 6 years ago
  54. fc2a826 Fix side channel vulnerability in ECDSA by Janos Follath · 6 years ago
  55. c514ce4 Add new, constant time mpi comparison by Janos Follath · 6 years ago
  56. 6bd8c0a ECDSA: Fix side channel vulnerability by Janos Follath · 6 years ago
  57. 20dbfb9 CTR_DRBG: support set_entropy_len() before seed() by Gilles Peskine · 6 years ago
  58. f0bf757 CTR_DRBG: Don't use functions before they're defined by Gilles Peskine · 6 years ago
  59. 1d2a9e8 HMAC_DRBG: support set_entropy_len() before seed() by Gilles Peskine · 6 years ago
  60. e1dc2de Move MBEDTLS_CTR_DRBG_USE_128_BIT_KEY to the correct section by Gilles Peskine · 6 years ago
  61. ae48d86 Fix bug in record decompression by Manuel Pégourié-Gonnard · 6 years ago
  62. 92af9a9 Fixes definition error when the deprecated MBEDTLS_ZLIB_SUPPORT and ENABLE_ZLIB_SUPPORT macro are defined/enabled for zlib support in mbedtls by jiblime · 6 years ago
  63. 17540ab Fix usage of randomized number in AES by Arto Kinnunen · 6 years ago
  64. 311ab59 Flag SCA_CM encrypt/decrypt functions by Arto Kinnunen · 6 years ago
  65. 2b24f42 AES review corrections by Arto Kinnunen · 6 years ago
  66. 98c93af Randomize number of AES dummy calculation rounds by Arto Kinnunen · 6 years ago
  67. 2eb678f Update AES SCA countermeasures by Arto Kinnunen · 6 years ago
  68. 28ecfb0 Merge remote-tracking branch 'upstream/pr/2983' into baremetal by Arto Kinnunen · 6 years ago
  69. ca1978b Merge remote-tracking branch 'upstream/pr/2982' into baremetal by Arto Kinnunen · 6 years ago
  70. d1340e4 Merge remote-tracking branch 'upstream/pr/2980' into baremetal by Arto Kinnunen · 6 years ago
  71. 10a2ffd Merge remote-tracking branch 'upstream/pr/2945' into baremetal by Arto Kinnunen · 6 years ago
  72. 8f8c0bd Use mbedtls_platform_memset in data_randomize by Jarno Lamsa · 6 years ago
  73. 282db8e Protect get/put on secret data on AES-module by Jarno Lamsa · 6 years ago
  74. 5bc072f Fix mbedtls_strerror to work with all wanted codes by Teppo Järvelin · 6 years ago
  75. b148651 Rename macro MBEDTLS_MAX_RAND_DELAY by Arto Kinnunen · 6 years ago
  76. ac6d226 Update signature of mbedtls_platform_random_delay by Arto Kinnunen · 6 years ago
  77. 05ca9d4 Merge remote-tracking branch 'public/pr/2979' into baremetal by Simon Butcher · 6 years ago
  78. 01d78fc Merge remote-tracking branch 'public/pr/2971' into baremetal by Simon Butcher · 6 years ago
  79. 2d9c0eb Merge remote-tracking branch 'public/pr/2948' into baremetal by Simon Butcher · 6 years ago
  80. 4b3b8c2 Merge remote-tracking branch 'public/pr/2886' into baremetal by Simon Butcher · 6 years ago
  81. bb86c52 Protect get/put on secret data on sha256-module by Jarno Lamsa · 6 years ago
  82. cafb6c9 Clear internal decrypted buffer after read by Teppo Järvelin · 6 years ago
  83. 7195571 Replace mbedtls_platform_enforce_volatile_reads 2 by Arto Kinnunen · 6 years ago
  84. e91f0dc Replace mbedtls_platform_enforce_volatile_reads by Arto Kinnunen · 6 years ago
  85. dbf2b43 Add more variation to random delay countermeasure by Arto Kinnunen · 6 years ago
  86. 0490485 Add random delay to enforce_volatile_reads by Arto Kinnunen · 6 years ago
  87. b47b105 Follow Mbed TLS coding style by Arto Kinnunen · 6 years ago
  88. 4c63b98 Add random delay function to platform_utils by Arto Kinnunen · 6 years ago
  89. 8f7e36f Coverity fixes, check hmac return values by Teppo Järvelin · 6 years ago
  90. 5aa4c07 Minor review fixes by Jarno Lamsa · 6 years ago
  91. 015aa44 Make authmode volatile by Jarno Lamsa · 6 years ago
  92. af60cd7 Protect the peer_authenticated flag more by Jarno Lamsa · 6 years ago
  93. 8d09e57 Increase hamming distance for session resume flag by Jarno Lamsa · 6 years ago
  94. 489dccd Adress review comments by Jarno Lamsa · 6 years ago
  95. 88db2ae Use Platform fault when double check fails by Jarno Lamsa · 6 years ago
  96. f5b6af0 Fix double check in entropy_gather_internal by Jarno Lamsa · 6 years ago
  97. 0616405 Check that we have all the proper keys by Jarno Lamsa · 6 years ago
  98. e1621d4 Check that the peer_authenticated flag by Jarno Lamsa · 6 years ago
  99. ba4730f Protect setting of peer_authenticated flag by Jarno Lamsa · 6 years ago
  100. 4031a45 Protect key_derivation_done flag by Jarno Lamsa · 6 years ago