Dr. Stephen Henson b4322e1de8 Fix CVE-2014-0221
Unnecessary recursion when receiving a DTLS hello request can be used to
crash a DTLS client. Fixed by handling DTLS hello request without recursion.

Thanks to Imre Rad (Search-Lab Ltd.) for discovering this issue.
(cherry picked from commit d3152655d5319ce883c8e3ac4b99f8de4c59d846)
2014-06-05 13:22:03 +01:00
..
2012-04-16 17:42:36 +00:00
2014-06-05 13:22:03 +01:00
2013-11-01 21:41:52 +00:00
2013-04-09 14:02:48 +01:00
2013-04-09 14:02:48 +01:00
2012-07-05 13:20:19 +00:00
2009-04-23 16:32:42 +00:00
2014-02-26 15:33:11 +00:00
2014-03-28 14:56:30 +00:00
2013-02-06 14:16:55 +00:00
2014-03-28 14:56:30 +00:00
2014-03-28 14:56:30 +00:00
2014-06-05 13:21:50 +01:00
2014-03-28 14:56:30 +00:00
2014-03-28 14:56:30 +00:00
2010-06-12 14:13:23 +00:00
2002-07-10 07:01:54 +00:00
2014-03-28 14:56:30 +00:00
2011-11-21 22:52:13 +00:00
2013-05-13 22:49:58 +02:00
2014-03-28 14:56:30 +00:00
2014-03-28 14:56:30 +00:00
2012-07-05 13:20:02 +00:00
2014-06-01 18:15:21 +01:00
2009-12-27 22:58:55 +00:00
2014-04-05 20:43:54 +01:00
2011-12-14 22:17:06 +00:00