You cannot select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Fixes some security issues (no remote exploits), and introduces some changes. See release notes for details: https://tls.mbed.org/tech-updates/releases/mbedtls-2.5.1-2.1.8-and-1.3.20-released * Fixes an unlimited overread of heap-based buffers in mbedtls_ssl_read() * Adds exponent blinding to RSA private operations * Wipes stack buffers in RSA private key operations (rsa_rsaes_pkcs1_v15_decrypt(), rsa_rsaes_oaep_decrypt()) * Removes SHA-1 and RIPEMD-160 from the default hash algorithms for certificate verification. * Fixes offset in FALLBACK_SCSV parsing that caused TLS server to fail to detect it sometimes. * Tighten parsing of RSA PKCS#1 v1.5 signatures, to avoid a potential Bleichenbacher/BERserk-style attack. Signed-off-by: Magnus Kroken <mkroken@gmail.com> |
7 years ago | |
---|---|---|
.. | ||
argp-standalone | 8 years ago | |
cyassl | 8 years ago | |
elfutils | 7 years ago | |
gettext | 8 years ago | |
gettext-full | 8 years ago | |
gmp | 8 years ago | |
libbsd | 8 years ago | |
libconfig | 8 years ago | |
libevent2 | 8 years ago | |
libiconv | 8 years ago | |
libiconv-full | 8 years ago | |
libjson-c | 7 years ago | |
libmnl | 8 years ago | |
libnetfilter-conntrack | 8 years ago | |
libnetfilter-cthelper | 8 years ago | |
libnetfilter-cttimeout | 8 years ago | |
libnetfilter-log | 8 years ago | |
libnetfilter-queue | 8 years ago | |
libnfnetlink | 8 years ago | |
libnftnl | 7 years ago | |
libnl | 7 years ago | |
libnl-tiny | 8 years ago | |
libpcap | 7 years ago | |
libroxml | 8 years ago | |
librpc | 8 years ago | |
libtool | 8 years ago | |
libubox | 7 years ago | |
libunwind | 7 years ago | |
libusb | 8 years ago | |
libusb-compat | 8 years ago | |
lzo | 7 years ago | |
mbedtls | 7 years ago | |
ncurses | 8 years ago | |
nettle | 8 years ago | |
openssl | 7 years ago | |
popt | 8 years ago | |
readline | 7 years ago | |
sysfsutils | 8 years ago | |
toolchain | 7 years ago | |
uclibc++ | 7 years ago | |
uclient | 8 years ago | |
ustream-ssl | 8 years ago | |
zlib | 8 years ago |