openssl/crypto
Dr. Stephen Henson 2198be3483 Fix for CVE-2014-0076
Fix for the attack described in the paper "Recovering OpenSSL
ECDSA Nonces Using the FLUSH+RELOAD Cache Side-channel Attack"
by Yuval Yarom and Naomi Benger. Details can be obtained from:
http://eprint.iacr.org/2014/140

Thanks to Yuval Yarom and Naomi Benger for discovering this
flaw and to Yuval Yarom for supplying a fix.
2014-03-12 14:16:19 +00:00
..
aes x86_64 assembly pack: make Windows build more robust [from master]. 2013-01-22 23:00:02 +01:00
asn1 Fix various spelling errors 2014-02-14 22:36:04 +00:00
bf Revert the size_t modifications from HEAD that had led to more 2008-11-12 03:58:08 +00:00
bio Avoid Windows 8 Getversion deprecated errors. 2014-02-25 13:43:04 +00:00
bn Fix for CVE-2014-0076 2014-03-12 14:16:19 +00:00
buffer Constification. 2013-10-01 15:26:14 +01:00
camellia x86_64 assembly pack: make Windows build more robust [from master]. 2013-01-22 23:00:02 +01:00
cast Constify crypto/cast. 2009-12-22 11:45:59 +00:00
cms Remove duplicate statement. 2014-02-15 01:29:49 +00:00
comp Assorted bugfixes: 2011-02-03 12:04:40 +00:00
conf PR: 2576 2011-09-02 11:20:41 +00:00
des PR: 2266 2010-05-26 23:23:44 +00:00
dh PR: 1644 2009-09-06 15:49:12 +00:00
dsa make EVP_dss() work for DSA signing 2011-06-20 20:05:38 +00:00
dso "make update" 2011-09-05 09:54:59 +00:00
ec Fix for CVE-2014-0076 2014-03-12 14:16:19 +00:00
ecdh Fix EC_KEY initialization race. 2012-10-05 20:51:31 +00:00
ecdsa Fix EC_KEY initialization race. 2012-10-05 20:51:31 +00:00
engine Add loaded dynamic ENGINEs to list. 2014-01-28 13:57:58 +00:00
err Don't include comp.h if no-comp set. 2013-01-20 01:12:15 +00:00
evp Ignore NULL parameter in EVP_MD_CTX_destroy. 2013-12-20 22:53:38 +00:00
hmac inherit HMAC flags from MD_CTX 2011-05-19 17:39:49 +00:00
idea
jpake J-PAKE was not correctly checking values, which could lead to attacks. 2010-11-24 13:48:12 +00:00
krb5
lhash Revert lhash patch for PR#2124 2009-12-09 15:00:20 +00:00
md2
md4
md5 x86_64 assembly pack: make Windows build more robust [from master]. 2013-01-22 23:00:02 +01:00
mdc2
modes [co]cf128.c: fix "n=0" bug [from HEAD]. 2010-04-14 07:47:53 +00:00
objects make update 2013-02-05 16:46:21 +00:00
ocsp Don't try and verify signatures if key is NULL (CVE-2013-0166) 2013-02-05 16:46:15 +00:00
pem Fix for PEM_X509_INFO_read_bio. 2013-08-06 16:05:52 +01:00
perlasm x86_64-xlate.pl: remove old kludge. 2012-03-13 19:19:57 +00:00
pkcs7 Submitted by: Markus Friedl <mfriedl@gmail.com> 2012-03-22 15:43:06 +00:00
pkcs12 PR: 2737 2012-02-27 16:46:54 +00:00
pqueue Fix warnings (From HEAD, original patch by Ben). 2010-06-15 17:25:15 +00:00
rand Avoid Windows 8 Getversion deprecated errors. 2014-02-25 13:43:04 +00:00
rc2
rc4 x86_64 assembly pack: make Windows build more robust [from master]. 2013-01-22 23:00:02 +01:00
rc5 Make inline assembler clang-friendly [from HEAD]. 2010-08-02 21:54:23 +00:00
ripemd PR: 1835 2009-02-14 21:49:38 +00:00
rsa Check for missing components in RSA_check. 2013-11-09 15:09:21 +00:00
seed Engage crypto/modes. 2008-12-23 11:33:01 +00:00
sha x86_64 assembly pack: make Windows build more robust [from master]. 2013-01-22 23:00:02 +01:00
stack make update 2014-01-23 17:14:48 +00:00
store Make it possible to disable STORE. 2009-02-19 09:42:51 +00:00
threads Functional VMS changes submitted by sms@antinode.info (Steven M. Schweda). 2009-05-15 16:37:08 +00:00
ts PR: 2410 2011-01-03 01:22:09 +00:00
txt_db Change STRING to OPENSSL_STRING etc as common words such 2009-07-27 21:08:53 +00:00
ui PR: 2717 2012-02-12 18:25:11 +00:00
whrlpool x86_64 assembly pack: make Windows build more robust [from master]. 2013-01-22 23:00:02 +01:00
x509 x509/by_dir.c: fix run-away pointer (and potential SEGV) 2014-02-24 15:24:14 +01:00
x509v3 Fix two bugs which affect delta CRL handling: 2012-12-06 18:25:18 +00:00
.cvsignore
alphacpuid.pl Alpha assembler fixes from HEAD. 2011-08-12 12:32:10 +00:00
cpt_err.c
cryptlib.c Avoid Windows 8 Getversion deprecated errors. 2014-02-25 13:43:04 +00:00
cryptlib.h export OPENSSL_isservice and make update 2010-01-26 13:55:33 +00:00
crypto-lib.com Cosmetic: Reorder so it's more similar to the Unixly build. 2012-07-04 17:27:43 +00:00
crypto.h Add and use a constant-time memcmp. 2013-02-05 16:46:15 +00:00
cversion.c
ebcdic.c
ebcdic.h
ex_data.c
ia64cpuid.S Make assembly language versions of OPENSSL_cleanse() accept zero length 2010-02-12 17:02:13 +00:00
install-crypto.com Apply all the changes submitted by Steven M. Schweda <sms@antinode.info> 2011-03-19 09:44:53 +00:00
LPdir_nyi.c
LPdir_unix.c
LPdir_vms.c Apply all the changes submitted by Steven M. Schweda <sms@antinode.info> 2011-03-19 09:44:53 +00:00
LPdir_win.c
LPdir_win32.c
LPdir_wince.c
Makefile Replace alphacpuid.s with alphacpuid.pl to ensure it makes to release tar-balls [from HEAD]. 2010-07-26 22:09:59 +00:00
md32_common.h Make inline assembler clang-friendly [from HEAD]. 2010-08-02 21:54:23 +00:00
mem.c Check for potentially exploitable overflows in asn1_d2i_read_bio 2012-04-19 11:44:51 +00:00
mem_clr.c
mem_dbg.c PR: 1894 2009-04-16 17:22:51 +00:00
o_dir.c
o_dir.h
o_dir_test.c
o_str.c Update from HEAD. 2009-06-01 12:14:15 +00:00
o_str.h
o_time.c Apply all the changes submitted by Steven M. Schweda <sms@antinode.info> 2011-03-19 09:44:53 +00:00
o_time.h Experimental new date handling routines. These fix issues with X509_time_adj() 2008-10-07 22:55:27 +00:00
opensslconf.h.in
opensslv.h Prepare for 1.0.0m-dev 2014-01-06 15:02:46 +00:00
ossl_typ.h Update from stable branch. 2008-11-11 12:23:18 +00:00
ppccpuid.pl ppccpuid.pl: branch hints in OPENSSL_cleanse impact small block performance 2012-04-27 20:21:26 +00:00
s390xcap.c s390x assembler update: add support for run-time facility detection [from HEAD]. 2010-01-19 21:40:58 +00:00
s390xcpuid.S Make assembly language versions of OPENSSL_cleanse() accept zero length 2010-02-12 17:02:13 +00:00
sparccpuid.S sparccpuid.S: work around emulator bug on T1. 2013-02-11 10:42:32 +01:00
sparcv9cap.c sparcv9cap.c: disengange Solaris-specific CPU detection routine in favour 2010-09-05 19:48:01 +00:00
symhacks.h VMS fixes 2014-01-11 22:42:15 +00:00
uid.c
vms_rms.h Apply all the changes submitted by Steven M. Schweda <sms@antinode.info> 2011-03-19 09:44:53 +00:00
x86_64cpuid.pl x86_64 assembly pack: make Windows build more robust [from master]. 2013-01-22 23:00:02 +01:00
x86cpuid.pl x86cpuid.pl: make it work with older CPUs. 2013-03-18 19:51:13 +01:00