Mark J. Cox 951dfbb13a Introduce limits to prevent malicious keys being able to
cause a denial of service.  (CVE-2006-2940)
[Steve Henson, Bodo Moeller]

Fix ASN.1 parsing of certain invalid structures that can result
in a denial of service.  (CVE-2006-2937)  [Steve Henson]

Fix buffer overflow in SSL_get_shared_ciphers() function.
(CVE-2006-3738) [Tavis Ormandy and Will Drewry, Google Security Team]

Fix SSL client code which could crash if connecting to a
malicious SSLv2 server.  (CVE-2006-4343)
[Tavis Ormandy and Will Drewry, Google Security Team]
2006-09-28 11:29:03 +00:00
..
2006-08-31 21:01:41 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-04-15 17:53:52 +00:00
2006-06-14 08:51:41 +00:00
2006-08-31 21:01:41 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:26:49 +00:00
2006-07-09 12:07:22 +00:00
2006-05-17 18:20:27 +00:00
2006-02-04 01:49:36 +00:00
2006-02-28 20:08:46 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2006-02-04 01:49:36 +00:00
2005-09-26 02:40:18 +00:00
2006-05-03 13:16:02 +00:00
2005-04-12 16:15:22 +00:00
2006-06-12 06:46:27 +00:00
2000-02-01 02:21:16 +00:00
2005-05-03 21:05:06 +00:00
2006-02-04 01:49:36 +00:00
2001-07-05 10:20:07 +00:00
2005-05-03 21:05:06 +00:00
2003-11-28 13:10:58 +00:00
2003-11-28 13:10:58 +00:00