This is an automated email from the git hooks/post-receive script. It was generated because a ref change was pushed to the repository containing the project "GNU gsasl".
http://git.savannah.gnu.org/cgit/gsasl.git/commit/?id=d3482691d3bbf9c9b45f5561bdba677c212dee50 The branch, master has been updated via d3482691d3bbf9c9b45f5561bdba677c212dee50 (commit) from 281dd7b59b2d418077216b17eee5ff7e4545e75e (commit) Those revisions listed above that are new to this repository have not appeared on any other notification email; so we list those revisions in full, below. - Log ----------------------------------------------------------------- commit d3482691d3bbf9c9b45f5561bdba677c212dee50 Author: Simon Josefsson <[email protected]> Date: Thu May 20 10:56:19 2010 +0200 Add. ----------------------------------------------------------------------- Summary of changes: lib/NEWS | 9 +++++++++ 1 files changed, 9 insertions(+), 0 deletions(-) diff --git a/lib/NEWS b/lib/NEWS index dd09c07..bf1fcae 100644 --- a/lib/NEWS +++ b/lib/NEWS @@ -4,6 +4,15 @@ See the end for copying conditions. * Version 1.5.2 (unreleased) [beta] +** SCRAM server: Compare c= field in client-final to match client-first. +Before our server did not verify that the channel binding and +authorization identity fields weren't tampered with. Reported by Marc +Santamaria <[email protected]>. + +** SCRAM server: Interop against clients that supports channel bindings. +Before our server would refuse such connections. Reported by Marc +Santamaria <[email protected]>. + ** API and ABI modifications. No changes since last version. hooks/post-receive -- GNU gsasl _______________________________________________ Gsasl-commit mailing list [email protected] http://lists.gnu.org/mailman/listinfo/gsasl-commit
