Dr. Stephen Henson
b15f876964
ECDH downgrade bug fix.
...
Fix bug where an OpenSSL client would accept a handshake using an
ephemeral ECDH ciphersuites with the server key exchange message omitted.
Thanks to Karthikeyan Bhargavan for reporting this issue.
CVE-2014-3572
Reviewed-by: Matt Caswell <matt@openssl.org>
2015-01-05 22:59:32 +00:00
..
2012-04-16 17:42:36 +00:00
2014-12-30 22:10:26 +00:00
2014-11-20 14:57:15 +01:00
2014-12-04 23:48:44 +01:00
2013-04-09 14:02:48 +01:00
2014-12-30 22:10:26 +00:00
2015-01-05 14:17:51 +00:00
2015-01-02 22:56:54 +00:00
2014-12-03 09:24:12 +00:00
2014-12-30 22:10:26 +00:00
2012-07-05 13:20:19 +00:00
2009-04-23 16:32:42 +00:00
2014-12-30 22:10:26 +00:00
2014-12-30 22:10:26 +00:00
2014-12-11 23:52:47 +00:00
2015-01-02 22:56:54 +00:00
2014-12-30 22:10:26 +00:00
2015-01-05 22:59:32 +00:00
2014-12-10 18:35:17 +01:00
2014-12-17 10:15:09 +01:00
2014-11-19 18:11:37 +00:00
2014-12-30 22:10:26 +00:00
2015-01-02 22:56:54 +00:00
2014-12-08 13:18:43 +00:00
2014-12-04 11:55:03 +01:00
2014-12-04 11:55:03 +01:00
2002-07-10 07:01:54 +00:00
2014-12-30 22:10:26 +00:00
2014-11-27 13:16:36 +00:00
2014-12-04 11:55:03 +01:00
2015-01-02 22:56:54 +00:00
1998-12-21 10:56:39 +00:00
2014-12-04 11:55:03 +01:00
2014-12-04 11:55:03 +01:00
2014-12-04 23:48:44 +01:00
2014-12-30 22:10:26 +00:00
2014-12-15 18:09:53 +01:00
2001-02-20 08:13:47 +00:00
2014-12-16 14:14:09 +00:00
2015-01-05 17:31:56 +01:00
2015-01-02 22:56:54 +00:00
2014-12-10 18:35:17 +01:00
2014-12-30 22:10:26 +00:00
2014-12-04 11:55:03 +01:00
2014-12-30 22:10:26 +00:00
2014-12-04 11:55:03 +01:00
2014-07-24 19:41:29 +01:00
2012-07-05 13:20:02 +00:00
2014-12-30 22:10:26 +00:00
2014-12-30 22:10:26 +00:00
2013-03-18 14:53:59 +00:00
2014-12-17 10:15:09 +01:00
2014-08-28 17:06:53 +01:00
2015-01-05 14:17:22 +00:00
2013-03-18 14:53:59 +00:00
2009-12-27 22:58:55 +00:00
2013-03-18 14:53:59 +00:00
2014-12-04 11:55:03 +01:00
2014-12-31 11:13:48 +01:00
2014-08-06 20:36:41 +01:00