TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls.git
/
52cb87beb764ffcc87b33b88a0b931f0e74cef00
/
library
52cb87b
Forced cast to prevent MSVC compiler warning
by Paul Bakker
· 11 years ago
4c9301a
Convert SOCKET to int to prevent compiler warnings under MSVC.
by Paul Bakker
· 12 years ago
9ccb211
Introduced POLARSSL_HAVE_READDIR_R for systems without it
by Paul Bakker
· 11 years ago
ff6e247
RSA blinding: check highly unlikely cases
by Paul Bakker
· 11 years ago
6b06502
Changed RSA blinding to a slower but thread-safe version
by Paul Bakker
· 12 years ago
polarssl-1.2.10
adace27
Prepped for 1.2.10 release
by Paul Bakker
· 12 years ago
2f1481e
Additional fixed to rsa.c with regards to blinding
by Paul Bakker
· 12 years ago
62087ee
Fixed memory leak in rsa.c introduced in 43f9799
by Paul Bakker
· 12 years ago
e45574e
Prepped for 1.2.9 release
by Paul Bakker
· 12 years ago
915ee19
Do not allow SHA256/SHA384 ciphersuites in < TLS 1.2
by Paul Bakker
· 12 years ago
43f9799
RSA blinding on CRT operations to counter timing attacks
by Paul Bakker
· 12 years ago
88a2264
Fixed potential file descriptor leaks
by Paul Bakker
· 12 years ago
f65fbee
x509_verify() now case insensitive for cn (RFC 6125 6.4)
by Paul Bakker
· 12 years ago
a565ace
Fixed potential memory leak when failing to resume a session
by Paul Bakker
· 12 years ago
a13d744
Fixed potential heap buffer overflow on large hostname setting
by Paul Bakker
· 12 years ago
fe7c24c
Fixed potential negative value misinterpretation in load_file()
by Paul Bakker
· 12 years ago
433fad2
Removed errant printf in x509parse_self_test()
by Paul Bakker
· 12 years ago
21360ca
ssl_write_certificate_request() can handle empty ca_chain
by Paul Bakker
· 12 years ago
polarssl-1.2.8
1d41950
Prepared for PolarSSL release 1.2.8
by Paul Bakker
· 12 years ago
da7fdbd
Fixed minor comment typo
by Paul Bakker
· 12 years ago
14a222c
Moved PKCS#12 PBE functions to cipher / md layer where possible
by Paul Bakker
· 12 years ago
2be71fa
Fixed values for 2-key Triple DES in cipher layer
by Paul Bakker
· 12 years ago
b495d3a
x509parse_crt() and x509parse_crt_der() return X509 password related codes
by Paul Bakker
· 12 years ago
1fc7dfe
Removed redundant free()s
by Paul Bakker
· 12 years ago
ff3a4b0
Added missing free()
by Paul Bakker
· 12 years ago
1fd4321
PKCS#5 v2 PBES2 support and use in PKCS#8 encrypted certificates
by Paul Bakker
· 12 years ago
19bd297
PKCS#5 module added. Moved PBKDF2 functionality inside and deprecated
by Paul Bakker
· 12 years ago
52b845b
Fixed bignum.c and bn_mul.h to support Thumb2 and LLVM compiler
by Paul Bakker
· 12 years ago
67812d3
Fixed location of brackets in pkcs12.c
by Paul Bakker
· 12 years ago
cbfcaa9
x509parse_crtpath() is now reentrant and uses more portable stat()
by Paul Bakker
· 12 years ago
d6d4109
Changed x509parse_crt_der() to support adding to chain.
by Paul Bakker
· 12 years ago
4087c47
Added mechanism to provide alternative cipher / hash implementations
by Paul Bakker
· 12 years ago
cf6e95d
Parsing of PKCS#8 encrypted private key files added and PKCS#12 basis
by Paul Bakker
· 12 years ago
65a1909
Internally split up x509parse_key()
by Paul Bakker
· 12 years ago
1922a4e
ssl_parse_certificate() now calls x509parse_crt_der() directly
by Paul Bakker
· 12 years ago
6417186
x509parse_crt() now better handles PEM error situations
by Paul Bakker
· 12 years ago
9255e83
pem_read_buffer() already update use_len after header and footer are read
by Paul Bakker
· 12 years ago
eae09db
Fixed const correctness issues that have no impact on the ABI
by Paul Bakker
· 12 years ago
f922630
Fixed offset for cert_type list in ssl_parse_certificate_request()
by Paul Bakker
· 12 years ago
7c3c389
Secure renegotiation extension should only be sent in case client supports secure renegotiation
by Paul Bakker
· 12 years ago
822e958
Prepared for PolarSSL 1.2.7 release
by Paul Bakker
· 12 years ago
polarssl-1.2.7
f42e5cc
Cleanup of the GCM code
by Paul Bakker
· 12 years ago
8a4ec44
Blowfish has default of 128-bit keysize in cipher layer
by Paul Bakker
· 12 years ago
a627298
Ability to specify allowed ciphersuites based on the protocol version.
by Paul Bakker
· 12 years ago
90f042d
Prepared for PolarSSL 1.2.6 release
by Paul Bakker
· 12 years ago
polarssl-1.2.6
e81beda
The SSL session cache module (ssl_cache) now also retains peer_cert information (not the entire chain)
by Paul Bakker
· 12 years ago
78a8c71
Re-added support for parsing and handling SSLv2 Client Hello messages
by Paul Bakker
· 12 years ago
37286a5
Fixed net_bind() for specified IP addresses on little endian systems
by Paul Bakker
· 12 years ago
926c8e4
Fixed possible NULL pointer exception in ssl_get_ciphersuite()
by Paul Bakker
· 12 years ago
8804f69
Removed timing differences due to bad padding from RSA decrypt for
by Paul Bakker
· 12 years ago
a43231c
Added support for custom labels when using rsa_rsaes_oaep_encrypt() or rsa_rsaes_oaep_decrypt()
by Paul Bakker
· 12 years ago
b386913
Split up the RSA PKCS#1 encrypt, decrypt, sign and verify functions
by Paul Bakker
· 12 years ago
8ddb645
Added conversion to int for a t_uint value to prevent compiler warnings
by Paul Bakker
· 12 years ago
3d2dc0f
Corrected GCM counter incrementation to use only 32-bits instead of 128-bits
by Paul Bakker
· 12 years ago
e47b34b
Removed further timing differences during SSL message decryption in ssl_decrypt_buf()
by Paul Bakker
· 12 years ago
2ca8ad1
Made x509parse.c also work with missing hash header files
by Paul Bakker
· 12 years ago
86f04f4
Fixed comment
by Paul Bakker
· 12 years ago
c046350
Fixed memory leak in ssl_free() and ssl_reset() for active session
by Paul Bakker
· 12 years ago
c7a2da4
Updated for PolarSSL 1.2.5
by Paul Bakker
· 13 years ago
polarssl-1.2.5
40865c8
Added sending of alert messages in case of decryption failures as per RFC
by Paul Bakker
· 13 years ago
d66f070
Disable debug messages that can introduce a timing side channel.
by Paul Bakker
· 13 years ago
4582999
Fixed timing difference resulting from badly formatted padding.
by Paul Bakker
· 13 years ago
8fe40dc
Allow enabling of dummy error_strerror() to support some use-cases
by Paul Bakker
· 13 years ago
14c56a3
Updated for PolarSSL 1.2.4
by Paul Bakker
· 13 years ago
polarssl-1.2.4
1961b70
Added ssl_handshake_step() to allow single stepping the handshake process
by Paul Bakker
· 13 years ago
9c94cdd
Correctly handle CertificateRequest with empty DN list in <= TLS 1.1
by Paul Bakker
· 13 years ago
21dca69
Handle future version properly in ssl_write_certificate_request()
by Paul Bakker
· 13 years ago
02303e8
Moved md_init_ctx() calls around to minimize exit points
by Paul Bakker
· 13 years ago
40628ba
Memory leak when using RSA_PKCS_V21 operations fixed
by Paul Bakker
· 13 years ago
fb1ba78
Updated for release 1.2.3
by Paul Bakker
· 13 years ago
polarssl-1.2.3
bc3d984
Fixed multiple DN size
by Paul Bakker
· 13 years ago
df5069c
Updated for 1.2.2 release
by Paul Bakker
· 13 years ago
polarssl-1.2.2
3497d8c
Do not check sig on trust-ca (might not be top)
by Paul Bakker
· 13 years ago
769075d
Fixed dependency on POLARSSL_SHA4_C in ssl modules
by Paul Bakker
· 13 years ago
78ce507
Fixed typo
by Paul Bakker
· 13 years ago
926af75
Fixed client certificate handling with TLS 1.2
by Paul Bakker
· 13 years ago
e44ec10
Fixed segfault in mpi_shift_r()
by Manuel Pégourié-Gonnard
· 13 years ago
90f309f
Added proper gitignores for linux compilation
by Paul Bakker
· 13 years ago
43ae298
- Fixed argument types
by Paul Bakker
· 13 years ago
34d8dbc
- Depth that the certificate verify callback receives is now numbered bottom-up (Peer cert depth is 0)
by Paul Bakker
· 13 years ago
e0f41f3
- Updated version to 1.2.1
by Paul Bakker
· 13 years ago
9daf0d0
- Added max length check for rsa_pkcs1_sign with PKCS#1 v2.1
by Paul Bakker
· 13 years ago
96c4ed8
- Proper building of shared lib when SHARED defined
by Paul Bakker
· 13 years ago
644db38
- Added SHARED define for building with -fPIC
by Paul Bakker
· 13 years ago
f02c564
- Allow R and A to point to same mpi in mpi_div_mpi
by Paul Bakker
· 13 years ago
36c4a67
- Fixed off-by-one loop
by Paul Bakker
· 13 years ago
096348f
- Fixed comments / typos
by Paul Bakker
· 13 years ago
fc975dc
- Small Windows VC6 fixes
by Paul Bakker
· 13 years ago
d9374b0
- Moved mpi_inv_mod() outside POLARSSL_GENPRIME
by Paul Bakker
· 13 years ago
7a2538e
- Fixes for MSVC6
by Paul Bakker
· 13 years ago
645ce3a
- Moved ciphersuite naming scheme to IANA reserved names
by Paul Bakker
· 13 years ago
bb0139c
- Moved to more flexible define structure
by Paul Bakker
· 13 years ago
35a7fe5
- Prevent compiler warning
by Paul Bakker
· 13 years ago
8611e73
- Fixed infinite loop
by Paul Bakker
· 13 years ago
b0550d9
- Added ssl_get_peer_cert() to SSL API
by Paul Bakker
· 13 years ago
d2c167e
- And fixed order
by Paul Bakker
· 13 years ago
98fe5ea
- Removed snprintf altogether for critical code paths
by Paul Bakker
· 13 years ago
331f563
- Do not use sprintf(), use snprintf() instead.
by Paul Bakker
· 13 years ago
ba26e9e
- Cache now only allows a maximum of entries in cache for preventing memory overrun
by Paul Bakker
· 13 years ago
f1ab0ec
- Changed default compiler flags to include -O2
by Paul Bakker
· 13 years ago
Next »