Latest update and remove TLSv1.3 draft
This commit is contained in:
@@ -9,6 +9,20 @@
|
||||
|
||||
Changes between 1.1.1 and 3.0.0 [xx XXX xxxx]
|
||||
|
||||
*) Add keyed BLAKE2 to EVP_MAC.
|
||||
[Antoine Salon]
|
||||
|
||||
*) Fix a bug in the computation of the endpoint-pair shared secret used
|
||||
by DTLS over SCTP. This breaks interoperability with older versions
|
||||
of OpenSSL like OpenSSL 1.1.0 and OpenSSL 1.0.2. There is a runtime
|
||||
switch SSL_MODE_DTLS_SCTP_LABEL_LENGTH_BUG (off by default) enabling
|
||||
interoperability with such broken implementations. However, enabling
|
||||
this switch breaks interoperability with correct implementations.
|
||||
|
||||
*) Fix a use after free bug in d2i_X509_PUBKEY when overwriting a
|
||||
re-used X509_PUBKEY object if the second PUBKEY is malformed.
|
||||
[Bernd Edlinger]
|
||||
|
||||
*) Move strictness check from EVP_PKEY_asn1_new() to EVP_PKEY_asn1_add0().
|
||||
[Richard Levitte]
|
||||
|
||||
@@ -63,7 +77,7 @@
|
||||
implementations. This includes a generic EVP_PKEY to EVP_MAC bridge,
|
||||
to facilitate the continued use of MACs through raw private keys in
|
||||
functionality such as EVP_DigestSign* and EVP_DigestVerify*.
|
||||
[Richard Levitte]
|
||||
[Richard Levitte]
|
||||
|
||||
*) Deprecate ECDH_KDF_X9_62() and mark its replacement as internal. Users
|
||||
should use the EVP interface instead (EVP_PKEY_CTX_set_ecdh_kdf_type).
|
||||
|
||||
Reference in New Issue
Block a user