Dear OpenSSL follower,

barsnick just announced version 1.0.1a of OpenSSL on Freecode.

The release notes for this version are as follows:

A check has been added for potentially exploitable overflows in
asn1_d2i_read_bio, BUF_mem_grow, and BUF_mem_grow_clean.  Workarounds have been
introduced for some broken servers which "hang" if a client hello record length
exceeds 255 bytes.  Incorrect use of TLS 1.2 SHA-256 ciphersuites in TLS 1.0 and
1.1 connections is now avoided.  A segmentation fault in the Vector Permutation
AES module has been fixed.

Project description:

The OpenSSL Project is a collaborative effort to
develop a robust, commercial-grade, fully
featured, and Open Source toolkit implementing the
Secure Sockets Layer (SSL v2/v3) and Transport
Layer Security (TLS v1) as well as a full-strength
general-purpose cryptography library.

Detailed history and release notes are available here:

    http://freecode.com/projects/openssl#release_343955

If you want to unfollow this project, please log in to:

    http://freecode.com/account/subscriptions

Best regards,
Freecode

-- 
This email was sent to [email protected].

Geeknet, Inc. | 594 Howard Street, Suite 300 | San Francisco, CA  94105 
Privacy Policy: http://geek.net/privacy-statement
-- 
http://linuxfromscratch.org/mailman/listinfo/blfs-book
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to