Files
openssl/ssl
Dr. Stephen Henson 4aaf1e493c ECDH downgrade bug fix.
Fix bug where an OpenSSL client would accept a handshake using an
ephemeral ECDH ciphersuites with the server key exchange message omitted.

Thanks to Karthikeyan Bhargavan for reporting this issue.

CVE-2014-3572
Reviewed-by: Matt Caswell <matt@openssl.org>

(cherry picked from commit b15f876964)
2015-01-05 23:34:57 +00:00
..
2012-04-16 17:43:02 +00:00
2013-09-18 13:46:02 +01:00
2015-01-02 23:01:38 +00:00
2009-04-21 22:20:12 +00:00
2014-02-26 15:33:10 +00:00
2014-11-27 21:46:00 +00:00
2014-11-27 21:46:04 +00:00
2014-10-15 04:04:55 +02:00
2015-01-02 23:01:38 +00:00
2015-01-05 23:34:57 +00:00
2015-01-02 23:01:38 +00:00
2014-10-15 08:54:26 -04:00
2002-07-10 07:01:54 +00:00
2015-01-02 23:12:37 +00:00
2015-01-02 23:01:38 +00:00
2014-10-28 17:38:23 +01:00
2014-07-04 13:42:05 +01:00
2013-09-18 13:46:02 +01:00
2014-08-28 18:10:21 +01:00
2015-01-05 14:28:40 +00:00
2009-12-27 22:59:09 +00:00
2014-08-06 20:41:53 +01:00