[openssl-dev] [openssl.org #3647] Remove Heartbeat Extension entirely

2015-01-08 Thread Aaron Zauner via RT
Hi, It seems the DTLS heartbeat extension is still supported in current OpenSSL versions (at least that's my impression while playing around with `s_server` with verbose debug logging). I've talked extensively to cryptographers and implementors about this extension, I'm not aware of a single use

[openssl-dev] [openssl.org #3646] Compile bug in 1.0.1k

2015-01-08 Thread Goldsmith, Benjamin via RT
Hello, I've discovered a compile time bug. The situation is: OS: Windows 7-64 bit Compiler: Visual C++ 11 (2012) Build steps: perl Configure VC-WIN64A no-asm --prefix=deps_x64 output snipped - no errors reported ms\do_win64a output snipped - no errors reported nmake -a -f ms\nt.mak cl

[openssl-dev] openssl-1.0.1k - undeclared identifier [GishPuppy]

2015-01-08 Thread gmane . bl4
Hello, I try to buld openssl-1.0.1k with Visual Studio... PERL Configure VC-WIN32... ms\do_nasm NMAKE -f ms\ntdll.mak and have one error: .\crypto\cversion.c(80) : error C2065: 'cflags' : undeclared identifier Simple patch: diff U3 a/openssl-1.0.1k/crypto/cversion.c

[openssl-dev] openssl-0.9.8zd - macro redefinition [GishPuppy]

2015-01-08 Thread gmane . bl4
Hello, I try to buld openssl-0.9.8zd with Visual Studio... PERL Configure VC-WIN32... ms\do_nasm NMAKE -f ms\ntdll.mak and receive error: ecs_vrf.c tmp32dll\cryptlib.h(68) : error C2220: warning treated as error - no 'object' file generated tmp32dll\cryptlib.h(68) : warning

[openssl-dev] 1.0.2-stable broken Windows build?

2015-01-08 Thread John Foley
Is the Windows build broken on 1.0.2-stable, am I doing something wrong, or is this a tool chain issue? I'm using VS 2013. Using the following steps works on 1.0.1-stable: perl Configure VC-WIN32 ms\do_ms.bat nmake -f ms\nt.mak Here's the log from the broken 1.0.2 build:

[openssl-dev] [openssl.org #3036] openssl-0.9.8y config removes symbolic link /dev/null on Solaris

2015-01-08 Thread Rich Salz via RT
This is a platform bug that can be avoided by not running ./config as root. -- Rich Salz, OpenSSL dev team; rs...@openssl.org ___ openssl-dev mailing list openssl-dev@openssl.org https://mta.openssl.org/mailman/listinfo/openssl-dev

[openssl-dev] OpenSSL version 1.0.1k released

2015-01-08 Thread OpenSSL
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 OpenSSL version 1.0.1k released === OpenSSL - The Open Source toolkit for SSL/TLS http://www.openssl.org/ The OpenSSL project team is pleased to announce the release of version 1.0.1k of our open source

[openssl-dev] OpenSSL version 0.9.8zd released

2015-01-08 Thread OpenSSL
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 OpenSSL version 0.9.8zd released === OpenSSL - The Open Source toolkit for SSL/TLS http://www.openssl.org/ The OpenSSL project team is pleased to announce the release of version 0.9.8zd of our open

[openssl-dev] OpenSSL version 1.0.0p released

2015-01-08 Thread OpenSSL
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 OpenSSL version 1.0.0p released === OpenSSL - The Open Source toolkit for SSL/TLS http://www.openssl.org/ The OpenSSL project team is pleased to announce the release of version 1.0.0p of our open source

[openssl-dev] OpenSSL Security Advisory

2015-01-08 Thread OpenSSL
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 OpenSSL Security Advisory [08 Jan 2015] === DTLS segmentation fault in dtls1_get_record (CVE-2014-3571) === Severity: Moderate A carefully crafted DTLS