Skip to content
Snippets Groups Projects
  1. Jul 03, 1998
  2. Jun 28, 1998
  3. Jun 26, 1998
    • Niels Möller's avatar
      Fix for Bleichenbacher's chosen ciphertext attack. Basically, don't · 6b577500
      Niels Möller authored
      send an ALERT-messages immediately if decryption of the session key
      failes. Continue handshaking as if nothing is wrong.
      
      Either some other invalid message is recieved, and handshaking failes
      at that time, or the client sends a change cipher message, followed by
      a completely garbled finished-message (as the server and client will
      not be using the same keys), or the client will wait for ever for an
      answer.
      
      Rev: lib/modules/SSL.pmod/handshake.pike:1.9
      6b577500
  4. Jun 24, 1998
  5. Jun 23, 1998
  6. Jun 17, 1998
  7. Jun 11, 1998
  8. Jun 10, 1998
  9. Jun 02, 1998
  10. May 25, 1998
  11. May 24, 1998
  12. May 23, 1998
  13. May 20, 1998
  14. May 12, 1998
  15. May 02, 1998
  16. Apr 21, 1998
  17. Apr 20, 1998
  18. Apr 10, 1998
  19. Apr 03, 1998
  20. Mar 24, 1998
  21. Mar 14, 1998
  22. Mar 06, 1998
  23. Mar 02, 1998
  24. Feb 28, 1998
  25. Feb 24, 1998
  26. Feb 11, 1998
  27. Jan 26, 1998
  28. Jan 20, 1998
  29. Jan 17, 1998
Loading