171 Commits

Author SHA1 Message Date
Matt Caswell
12ad22dd16 Prepare for 1.0.2v-dev
Reviewed-by: Paul Yang <kaishen.yy@antfin.com>
2019-12-20 13:10:12 +00:00
Matt Caswell
e818b74be2 Prepare for 1.0.2u release
Reviewed-by: Paul Yang <kaishen.yy@antfin.com>
2019-12-20 13:09:21 +00:00
Matt Caswell
b10ccf7f8a Updates NEWS for new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/10663)
2019-12-19 17:28:18 +00:00
Matt Caswell
a1ff24ad2c Prepare for 1.0.2u-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2019-09-10 14:37:06 +01:00
Matt Caswell
cd7c7fc20b Prepare for 1.0.2t release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2019-09-10 14:36:07 +01:00
Matt Caswell
b5decf674b Fix the NEWS file
The NEWS file was missing an entry for 1.0.2s. This confuses the release
scripts - so add an empty entry.

Reviewed-by: Richard Levitte <levitte@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/9852)
2019-09-10 14:34:22 +01:00
Matt Caswell
2608005420 Remove duplicate CHANGES entry
Reviewed-by: Richard Levitte <levitte@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/9846)
2019-09-10 12:09:49 +01:00
Matt Caswell
8bf7d77f33 Update CHANGES and NEWS for the new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/9843)
2019-09-10 10:55:08 +01:00
Richard Levitte
ec36b32985 Prepare for 1.0.2t-dev
Reviewed-by: Matt Caswell <matt@openssl.org>
2019-05-28 14:56:42 +02:00
Richard Levitte
bb36ec5f5b Add CHANGES for 1.0.2s
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/9019)
2019-05-28 10:07:44 +02:00
Matt Caswell
56ff0f6434 Prepare for 1.0.2s-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2019-02-26 14:21:45 +00:00
Matt Caswell
b34cf4eb61 Prepare for 1.0.2r release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2019-02-26 14:20:55 +00:00
Matt Caswell
28c43df928 Updates CHANGES and NEWS for the new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2019-02-26 14:13:05 +00:00
Matt Caswell
49d07eb3cc Prepare for 1.0.2r-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2018-11-20 13:46:11 +00:00
Matt Caswell
5707219a6a Prepare for 1.0.2q release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2018-11-20 13:45:20 +00:00
Matt Caswell
548cce63dd Update CHANGES and NEWS for new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
Reviewed-by: Nicola Tuveri <nic.tuv@gmail.com>
(Merged from https://github.com/openssl/openssl/pull/7667)
2018-11-20 11:57:17 +00:00
Matt Caswell
8297ab5800 Prepare for 1.0.2q-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2018-08-14 14:01:59 +01:00
Matt Caswell
e71ebf275d Prepare for 1.0.2p release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2018-08-14 14:01:02 +01:00
Matt Caswell
0698c33a7b Updates to CHANGES and NEWS for the new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/6951)
2018-08-14 10:57:38 +01:00
Matt Caswell
69a61c26f2 Prepare for 1.0.2p-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2018-03-27 14:56:15 +01:00
Matt Caswell
3ce7bc40a3 Prepare for 1.0.2o release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2018-03-27 14:55:22 +01:00
Matt Caswell
b621f604e9 Update CHANGES and NEWS for the new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2018-03-27 13:33:09 +01:00
Matt Caswell
ebe1830232 Prepare for 1.0.2o-dev
Reviewed-by: Andy Polyakov <appro@openssl.org>
2017-12-07 13:20:44 +00:00
Matt Caswell
e5bba24cd8 Prepare for 1.0.2n release
Reviewed-by: Andy Polyakov <appro@openssl.org>
2017-12-07 13:19:36 +00:00
Matt Caswell
f3b6b413b0 Update CHANGES and NEWS for the new release
Reviewed-by: Rich Salz <rsalz@openssl.org>
2017-12-07 11:31:48 +00:00
Matt Caswell
95aec441c0 Prepare for 1.0.2n-dev
Reviewed-by: Andy Polyakov <appro@openssl.org>
2017-11-02 14:34:50 +00:00
Matt Caswell
8b1549a153 Prepare for 1.0.2m release
Reviewed-by: Andy Polyakov <appro@openssl.org>
2017-11-02 14:33:44 +00:00
Matt Caswell
64c46a9822 Update CHANGES and NEWS for new release
Reviewed-by: Andy Polyakov <appro@openssl.org>
2017-11-02 12:03:59 +00:00
Matt Caswell
22d41cd348 Prepare for 1.0.2m-dev
Reviewed-by: Stephen Henson <steve@openssl.org>
2017-05-25 13:57:07 +01:00
Matt Caswell
b3a3bab05c Prepare for 1.0.2l release
Reviewed-by: Stephen Henson <steve@openssl.org>
2017-05-25 13:55:36 +01:00
Matt Caswell
cde19ecda8 Update CHANGES and NEWS for new release
Reviewed-by: Kurt Roeckx <kurt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/3548)
2017-05-25 12:44:30 +01:00
Matt Caswell
f24fcf2912 Prepare for 1.0.2l-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2017-01-26 13:23:37 +00:00
Matt Caswell
081314d077 Prepare for 1.0.2k release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2017-01-26 13:22:36 +00:00
Matt Caswell
06f87e9685 Update CHANGES and NEWS for new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2017-01-26 11:02:44 +00:00
Matt Caswell
19e1de548e Update CHANGES and NEWS
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-11-10 12:18:21 +00:00
Matt Caswell
9702bf5fa2 Fix NEWS error
The NEWS file referenced the wrong CVE for 1.0.2

Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-09-26 11:20:11 +01:00
Matt Caswell
f6e43fee70 Prepare for 1.0.2k-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-09-26 10:50:48 +01:00
Matt Caswell
e216bf9d7c Prepare for 1.0.2j release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-09-26 10:49:49 +01:00
Matt Caswell
ca430ece0d Update CHANGES and NEWS for the new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-09-26 10:02:06 +01:00
Matt Caswell
9d264d11a9 Prepare for 1.0.2j-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-09-22 11:25:49 +01:00
Matt Caswell
32c130160f Prepare for 1.0.2i release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-09-22 11:24:53 +01:00
Matt Caswell
35aede1cd7 Updates CHANGES and NEWS for new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-09-22 09:22:05 +01:00
Matt Caswell
5c6944593d Prepare for 1.0.2i-dev
Reviewed-by: Rich Salz <rsalz@openssl.org>
2016-05-03 14:47:32 +01:00
Matt Caswell
5dd94f1847 Prepare for 1.0.2h release
Reviewed-by: Rich Salz <rsalz@openssl.org>
2016-05-03 14:46:41 +01:00
Matt Caswell
b4d56b8ecb Update CHANGES and NEWS for the new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-05-03 13:19:10 +01:00
Matt Caswell
a500691658 Prepare for 1.0.2h-dev
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-03-01 13:37:56 +00:00
Matt Caswell
902f3f50d0 Prepare for 1.0.2g release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-03-01 13:36:54 +00:00
Matt Caswell
248808c840 Update CHANGES and NEWS for new release
Reviewed-by: Richard Levitte <levitte@openssl.org>
2016-03-01 11:48:43 +00:00
Viktor Dukhovni
bc38a7d2d3 Disable EXPORT and LOW SSLv3+ ciphers by default
Reviewed-by: Emilia Käsper <emilia@openssl.org>
2016-03-01 11:20:35 +00:00
Viktor Dukhovni
9dfd2be8a1 Disable SSLv2 default build, default negotiation and weak ciphers.
SSLv2 is by default disabled at build-time.  Builds that are not
configured with "enable-ssl2" will not support SSLv2.  Even if
"enable-ssl2" is used, users who want to negotiate SSLv2 via the
version-flexible SSLv23_method() will need to explicitly call either
of:

    SSL_CTX_clear_options(ctx, SSL_OP_NO_SSLv2);
or
    SSL_clear_options(ssl, SSL_OP_NO_SSLv2);

as appropriate.  Even if either of those is used, or the application
explicitly uses the version-specific SSLv2_method() or its client
or server variants, SSLv2 ciphers vulnerable to exhaustive search
key recovery have been removed.  Specifically, the SSLv2 40-bit
EXPORT ciphers, and SSLv2 56-bit DES are no longer available.

Mitigation for CVE-2016-0800

Reviewed-by: Emilia Käsper <emilia@openssl.org>
2016-03-01 11:20:10 +00:00