aboutsummaryrefslogtreecommitdiffstats
path: root/NEWS
diff options
context:
space:
mode:
authorRichard Levitte <levitte@openssl.org>2001-03-28 13:36:13 +0000
committerRichard Levitte <levitte@openssl.org>2001-03-28 13:36:13 +0000
commit7cdd2aa128811724497b98d20dd06a2efca9c266 (patch)
tree6882ba9b268908aa27265c1fb75081158851a22c /NEWS
parent7d7672f119c8e57148b399a7b70f72bf1910bdc1 (diff)
downloadopenssl-7cdd2aa128811724497b98d20dd06a2efca9c266.tar.gz
Add news section for OpenSSL 0.9.6a. Please add what's missing
Diffstat (limited to 'NEWS')
-rw-r--r--NEWS22
1 files changed, 22 insertions, 0 deletions
diff --git a/NEWS b/NEWS
index 9db4561701..ed03b7b752 100644
--- a/NEWS
+++ b/NEWS
@@ -10,6 +10,28 @@
o New library section OCSP.
o Complete haul-over of the ASN.1 library section.
+ Major changes between OpenSSL 0.9.6 and OpenSSL 0.9.6a:
+
+ o Security fix: change behavior of OpenSSL to avoid using
+ environment variables when running as root.
+ o Security fix: check the result of RSA-CRT to reduce the
+ possibility of deducing the private key from an incorrectly
+ calculated signature.
+ o Security fix: prevent Bleichenbacher's DSA attack.
+ o Security fix: Zero the premaster secret after deriving the
+ master secret in DH ciphersuites.
+ o Bug fixes for Win32, HP/UX and Irix.
+ o Bug fixes in BIGNUM, SSL, PKCS#7, PKCS#12, X.509, CONF and
+ memory checking routines.
+ o Bug fixes for RSA operations in threaded enviroments.
+ o Bug fixes in misc. openssl applications.
+ o Remove a few potential memory leaks.
+ o Add tighter checks of BIGNUM routines.
+ o Shared library support has been reworked for generality.
+ o More documentation.
+ o New function BN_rand_range()
+ o Add "-rand" option to openssl s_client and s_server.
+
Major changes between OpenSSL 0.9.5a and OpenSSL 0.9.6:
o Some documentation for BIO and SSL libraries.