aboutsummaryrefslogtreecommitdiff
path: root/openssl/trunk/NEWS
diff options
context:
space:
mode:
authorRob Austein <sra@hactrn.net>2006-10-09 16:47:10 +0000
committerRob Austein <sra@hactrn.net>2006-10-09 16:47:10 +0000
commit4043d7db4e466d15193c3bad3b204048fc13b785 (patch)
tree8156ce31a6e4a155fc240551f48c23b5a42a6e5e /openssl/trunk/NEWS
parentaba277548b76071e75fc9478002a6fc2145f64f1 (diff)
Merged in changes from OpenSSL 0.9.8d
svn path=/openssl/trunk/CHANGES; revision=377
Diffstat (limited to 'openssl/trunk/NEWS')
-rw-r--r--openssl/trunk/NEWS19
1 files changed, 17 insertions, 2 deletions
diff --git a/openssl/trunk/NEWS b/openssl/trunk/NEWS
index 4cdfbf43..ad8033a8 100644
--- a/openssl/trunk/NEWS
+++ b/openssl/trunk/NEWS
@@ -5,6 +5,17 @@
This file gives a brief overview of the major changes between each OpenSSL
release. For more details please read the CHANGES file.
+ Major changes between OpenSSL 0.9.7c and OpenSSL 0.9.8d:
+
+ o Introduce limits to prevent malicious key DoS (CVE-2006-2940)
+ o Fix security issues (CVE-2006-2937, CVE-2006-3737, CVE-2006-4343)
+ o Changes to ciphersuite selection algorithm
+
+ Major changes between OpenSSL 0.9.8b and OpenSSL 0.9.8c:
+
+ o Fix Daniel Bleichenbacher forged signature attack, CVE-2006-4339
+ o New cipher Camellia
+
Major changes between OpenSSL 0.9.8a and OpenSSL 0.9.8b:
o Cipher string fixes.
@@ -17,7 +28,7 @@
Major changes between OpenSSL 0.9.8 and OpenSSL 0.9.8a:
- o Fix potential SSL 2.0 rollback, CAN-2005-2969
+ o Fix potential SSL 2.0 rollback, CVE-2005-2969
o Extended Windows CE support
Major changes between OpenSSL 0.9.7g and OpenSSL 0.9.8:
@@ -94,6 +105,10 @@
o Added initial support for Win64.
o Added alternate pkg-config files.
+ Major changes between OpenSSL 0.9.7j and OpenSSL 0.9.7k:
+
+ o Fix Daniel Bleichenbacher forged signature attack, CVE-2006-4339
+
Major changes between OpenSSL 0.9.7i and OpenSSL 0.9.7j:
o Visual C++ 2005 fixes.
@@ -105,7 +120,7 @@
Major changes between OpenSSL 0.9.7g and OpenSSL 0.9.7h:
- o Fix SSL 2.0 Rollback, CAN-2005-2969
+ o Fix SSL 2.0 Rollback, CVE-2005-2969
o Allow use of fixed-length exponent on DSA signing
o Default fixed-window RSA, DSA, DH private-key operations