TrustedFirmware Git Browser
Code Review
Sign In
review.trustedfirmware.org
/
mirror
/
mbed-tls
/
refs/heads/archive/mbedtls-2.1
/
library
/
ssl_tls.c
5ca1f27
Merge remote-tracking branch 'public/pr/2097' into mbedtls-2.1-proposed
by Simon Butcher
· 7 years ago
3aab4cc
Fail when encountering invalid CBC padding in EtM records
by Hanno Becker
· 7 years ago
728d6cd
Add missing zeroization of reassembled handshake messages
by Hanno Becker
· 7 years ago
8d408fa
Merge remote-tracking branch 'restricted/pr/438' into mbedtls-2.1-restricted
by Simon Butcher
· 7 years ago
d22de0a
Merge remote-tracking branch 'restricted/pr/492' into mbedtls-2.1-restricted
by Simon Butcher
· 7 years ago
d288ac0
Merge remote-tracking branch 'public/pr/1959' into mbedtls-2.1
by Simon Butcher
· 7 years ago
42d267b
Compute record expansion in steps to ease readability
by Hanno Becker
· 7 years ago
07eb7ca
Fix mbedtls_ssl_get_record_expansion() for CBC modes
by Hanno Becker
· 7 years ago
3328d8c
Reset session_in/out pointers in ssl_session_reset_int()
by Hanno Becker
· 7 years ago
83f9fba
Revert change of a return variable name
by k-stachowiak
· 7 years ago
3339fe9
Merge remote-tracking branch 'restricted/pr/495' into mbedtls-2.1
by Simon Butcher
· 7 years ago
642ddb5
Merge remote-tracking branch 'public/pr/1864' into mbedtls-2.1
by Simon Butcher
· 7 years ago
eebee76
Merge remote-tracking branch 'public/pr/1846' into mbedtls-2.1
by Simon Butcher
· 7 years ago
fd1c5e8
Check for invalid short Alert messages
by Angus Gratton
· 7 years ago
485b393
TLSv1.2: Treat zero-length fragments as invalid, unless they are application data
by Angus Gratton
· 7 years ago
1226dd7
CBC mode: Allow zero-length message fragments (100% padding)
by Angus Gratton
· 7 years ago
671f932
Avoid debug message that might leak length
by Manuel Pégourié-Gonnard
· 7 years ago
99b6a71
Add counter-measure to cache-based Lucky 13
by Manuel Pégourié-Gonnard
· 7 years ago
4772a1f
Fix memory leak in ssl_setup
by k-stachowiak
· 7 years ago
bbc7918
Fixes different off by ones
by Philippe Antoine
· 7 years ago
8ba6ff5
about a issue Replace "new" variable #1782
by niisato
· 7 years ago
e5828ce
Merge remote-tracking branch 'public/pr/1771' into mbedtls-2.1
by Simon Butcher
· 7 years ago
ad761c4
Fix multiple quality issues in the source
by Simon Butcher
· 7 years ago
b999a73
Document ssl_write_real() behaviour in detail
by Andres Amaya Garcia
· 8 years ago
e8dd77b
Fix Lucky13 attack protection when using HMAC-SHA-384
by Gilles Peskine
· 7 years ago
078014a
Change variable bytes_written to header_bytes in record decompression
by Andrzej Kurek
· 7 years ago
archive/iotssl-1401-record-compression-2.1
iotssl-1401-record-compression-2.1
bb66614
ssl_tls: Fix invalid buffer sizes during compression / decompression
by Andrzej Kurek
· 7 years ago
ac9939c
Merge remote-tracking branch 'upstream-public/pr/1461' into mbedtls-2.1-proposed
by Jaeden Amero
· 7 years ago
ee6c822
Merge remote-tracking branch 'upstream-public/pr/1396' into mbedtls-2.1-proposed
by Jaeden Amero
· 7 years ago
ad2908c
Fix compatibility problem in the printed message
by mohammad1603
· 7 years ago
f72e51f
Check whether INT_MAX larger than SIZE_MAX scenario
by mohammad1603
· 7 years ago
cee0890
Verify that f_send and f_recv send and receive the expected length
by mohammad1603
· 7 years ago
823734b
Robustness fix in mbedtls_ssl_derive_keys
by Gilles Peskine
· 7 years ago
89c12ec
Avoid wraparound on in_left
by mohammad1603
· 7 years ago
9a00ef3
Merge branch 'pr_953' into HEAD
by Gilles Peskine
· 7 years ago
25ec9cc
Merge branch 'prr_428' into mbedtls-2.1-proposed
by Gilles Peskine
· 7 years ago
f65add4
Backport 2.1:Add guard to out_left to avoid negative values
by mohammad1603
· 7 years ago
bfafd12
Merge remote-tracking branch 'upstream-restricted/pr/414' into mbedtls-2.1-restricted
by Jaeden Amero
· 8 years ago
1ac9aa7
Set correct minimal versions in default conf
by Ron Eldor
· 8 years ago
394767c
Compute outgoing MAC in temporary buffer for MAC-then-Encrypt
by Hanno Becker
· 8 years ago
c83f57b
Merge remote-tracking branch 'upstream-restricted/pr/434' into mbedtls-2.1-restricted
by Gilles Peskine
· 8 years ago
451ea75
Merge remote-tracking branch 'restricted/pr/412' into mbedtls-2.1-restricted
by Manuel Pégourié-Gonnard
· 8 years ago
4b133e6
Fix magic constant in previous commit
by Manuel Pégourié-Gonnard
· 8 years ago
b67a5c1
Fix SSLv3 MAC computation
by Manuel Pégourié-Gonnard
· 8 years ago
aed7188
Merge remote-tracking branch 'upstream-restricted/pr/427' into mbedtls-2.1-restricted
by Gilles Peskine
· 8 years ago
adb30b9
Improve documentation of MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT option
by Hanno Becker
· 8 years ago
053b345
Add fallback to non-compliant truncated HMAC for compatibiltiy
by Hanno Becker
· 8 years ago
64f0aed
Don't truncate MAC key when truncated HMAC is negotiated
by Hanno Becker
· 8 years ago
6cf85ff
Merge branch 'mbedtls-2.1' into mbedtls-2.1-restricted
by Gilles Peskine
· 8 years ago
49349ba
Merge remote-tracking branch 'upstream-public/pr/1153' into mbedtls-2.1
by Gilles Peskine
· 8 years ago
336b7de
Merge remote-tracking branch 'upstream-restricted/pr/386' into mbedtls-2.1-restricted
by Gilles Peskine
· 8 years ago
7aa2419
Merge remote-tracking branch 'upstream-public/pr/1107' into mbedtls-2.1
by Gilles Peskine
· 8 years ago
ce516ff
Fix heap corruption in ssl_decrypt_buf
by Hanno Becker
· 8 years ago
ea0aa65
Merge branch 'mbedtls-2.1' into mbedtls-2.1-restricted
by Manuel Pégourié-Gonnard
· 8 years ago
3cd07be
Fix handling of HS msgs in mbedtls_ssl_read if renegotiation unused
by Hanno Becker
· 8 years ago
e454d73
Swap branches accepting/refusing renegotiation in in ssl_read
by Hanno Becker
· 8 years ago
a360411
Fixed SIGSEGV problem when writing with ssl_write_real a buffer that is over MBEDTLS_SSL_MAX_CONTENT_LEN bytes
by Florin
· 8 years ago
e298c8b
Correct typo
by Hanno Becker
· 8 years ago
80e0d46
Use 2048-bit DHE parameters from RFC 3526 instead of 5114 by default
by Hanno Becker
· 8 years ago
6e052b0
Improve debugging output
by Hanno Becker
· 8 years ago
0983dc4
Add run-time check for handshake message size in ssl_write_record
by Hanno Becker
· 8 years ago
aede183
Add run-time check for record content size in ssl_encrypt_buf
by Hanno Becker
· 8 years ago
c7845e5
Enhance documentation of ssl_write_hostname_ext, adapt ChangeLog.
by Hanno Becker
· 8 years ago
593b0d3
Make mbedtls_ssl_set_hostname safe to be called multiple times
by Hanno Becker
· 8 years ago
1042d86
Dont send alert on invalid DTLS record type
by Andres Amaya Garcia
· 8 years ago
3d23146
Set len var to 0 when buf is freed in ssl_tls.c
by Andres Amaya Garcia
· 8 years ago
1b7d6f8
Zeroize old psk buf when changing value in ssl_tls
by Andres Amaya Garcia
· 8 years ago
cc01908
Ensure application data records are not kept when fully processed
by Hanno Becker
· 8 years ago
bfbc494
Add hard assertion to mbedtls_ssl_read_record_layer
by Hanno Becker
· 8 years ago
6a582e8
Fix mbedtls_ssl_read
by Hanno Becker
· 8 years ago
704f493
Simplify retaining of messages for future processing
by Hanno Becker
· 8 years ago
61c0c70
Add tests for missing CA chains and bad curves.
by Hanno Becker
· 8 years ago
a3929ba
Fix implementation of VERIFY_OPTIONAL verification mode
by Hanno Becker
· 8 years ago
7344e1b
SHA-1 deprecation: allow it in key exchange
by Gilles Peskine
· 8 years ago
955738a
Remove SHA-1 in TLS by default
by Gilles Peskine
· 8 years ago
aa8a2bd
Remember suitable hash function for any signature algorithm.
by Hanno Becker
· 8 years ago
7fa66d4
Fix renegotiation at incorrect times in DTLS
by Andres AG
· 9 years ago
e7f8dc3
Clarify Comments and Fix Typos (#651)
by Brian J Murray
· 9 years ago
0be55a0
Remove MBEDTLS_SSL_AEAD_RANDOM_IV feature
by Janos Follath
· 9 years ago
c941b6c
Fix for unused variable warning
by Simon Butcher
· 10 years ago
aa41149
Merge 'iotssl-558-2.1-md5-tls-sigs-restricted'
by Simon Butcher
· 10 years ago
e103aa8
Added description of change to the Changelog
by Simon Butcher
· 10 years ago
b39528e
Disable MD5 in handshake signatures by default
by Manuel Pégourié-Gonnard
· 10 years ago
013198f
DTLS: avoid dropping too many records
by Manuel Pégourié-Gonnard
· 10 years ago
c282405
Fix other int casts in bounds checking
by Manuel Pégourié-Gonnard
· 10 years ago
ffb8180
Fix potential double-free in ssl_conf_psk()
by Manuel Pégourié-Gonnard
· 10 years ago
94c5e3c
Fixed typo in comment
by Simon Butcher
· 10 years ago
a314076
Fix handling of non-fatal alerts
by Manuel Pégourié-Gonnard
· 10 years ago
f9945bc
Fix #ifdef inconsistency
by Manuel Pégourié-Gonnard
· 10 years ago
770f453
Remove useless code
by Manuel Pégourié-Gonnard
· 10 years ago
fec73a8
Merge of fix for IOTSSL-481 - Double free
by Simon Butcher
· 10 years ago
5b8d1d6
Fix for IOTSSL-473 Double free error
by Simon Butcher
· 10 years ago
ef388f1
Merge branch 'development' into development-restricted
by Manuel Pégourié-Gonnard
· 10 years ago
9f81231
Revised hostname length check from review
by Simon Butcher
· 10 years ago
24417f0
Fix potential double-free in mbedtls_ssl_conf_psk()
by Manuel Pégourié-Gonnard
· 10 years ago
89f7762
Added max length checking of hostname
by Simon Butcher
· 10 years ago
588ad50
Fix a fairly common typo in comments
by Tillmann Karras
· 10 years ago
5793e7e
Merge 'development' into iotssl-411-port-reuse
by Simon Butcher
· 10 years ago
ea5370d
Don't allow reconnect during handshake
by Manuel Pégourié-Gonnard
· 10 years ago
d0bf6a3
Update ssl_tls.c
by Simon Butcher
· 10 years ago
Next »