openssl/ssl
Matt Caswell ad64a69e02 Change usage of RAND_pseudo_bytes to RAND_bytes
RAND_pseudo_bytes() allows random data to be returned even in low entropy
conditions. Sometimes this is ok. Many times it is not. For the avoidance
of any doubt, replace existing usage of RAND_pseudo_bytes() with
RAND_bytes().

Reviewed-by: Rich Salz <rsalz@openssl.org>
2016-06-27 15:00:08 +01:00
..
bio_ssl.c Handle SSL_ERROR_WANT_X509_LOOKUP 2015-09-20 14:21:18 +01:00
clienthellotest.c GH354: Memory leak fixes 2015-08-28 11:59:23 -04:00
d1_both.c Change usage of RAND_pseudo_bytes to RAND_bytes 2016-06-27 15:00:08 +01:00
d1_clnt.c Only call ssl3_init_finished_mac once for DTLS 2015-11-10 18:44:56 +00:00
d1_lib.c Fix Seg fault in DTLSv1_listen 2015-03-19 11:11:22 +00:00
d1_meth.c Ensure the dtls1_get_*_methods work with DTLS_ANY_VERSION 2015-11-04 14:46:03 +00:00
d1_pkt.c Lost alert in DTLS 2015-05-22 09:44:44 +01:00
d1_srtp.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
d1_srvr.c Stop DTLS servers asking for unsafe legacy renegotiation 2015-11-10 19:24:20 +00:00
dtls1.h Fix d2i_SSL_SESSION for DTLS1_BAD_VER 2015-02-27 20:31:28 +00:00
heartbeat_test.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
install-ssl.com
kssl.c Remove the "eay" c-file-style indicators 2015-12-18 13:39:34 +01:00
kssl.h Remove the "eay" c-file-style indicators 2015-12-18 13:39:34 +01:00
kssl_lcl.h Remove the "eay" c-file-style indicators 2015-12-18 13:39:34 +01:00
Makefile make update 2016-03-01 13:36:54 +00:00
s2_clnt.c Change usage of RAND_pseudo_bytes to RAND_bytes 2016-06-27 15:00:08 +01:00
s2_enc.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
s2_lib.c Remove LOW from the default 2016-03-07 18:54:57 +01:00
s2_meth.c Add no-ssl2-method 2016-03-14 21:13:59 +01:00
s2_pkt.c Add length sanity check in SSLv2 n_do_ssl_write() 2015-04-29 17:23:45 +01:00
s2_srvr.c Change usage of RAND_pseudo_bytes to RAND_bytes 2016-06-27 15:00:08 +01:00
s3_both.c Ensure verify error is set when X509_verify_cert() fails 2016-05-19 18:15:08 -04:00
s3_cbc.c Good hygiene with size_t output argument. 2015-11-21 05:23:20 -05:00
s3_clnt.c Fix memory leak on invalid CertificateRequest. 2016-04-07 19:25:48 +01:00
s3_enc.c The ssl3_digest_cached_records() function does not handle errors properly 2016-05-26 16:13:08 +01:00
s3_lib.c Remove LOW from the default 2016-03-07 18:54:57 +01:00
s3_meth.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
s3_pkt.c Fix write failure handling in DTLS1.2 2015-07-30 10:18:43 +01:00
s3_srvr.c Change usage of RAND_pseudo_bytes to RAND_bytes 2016-06-27 15:00:08 +01:00
s23_clnt.c Change usage of RAND_pseudo_bytes to RAND_bytes 2016-06-27 15:00:08 +01:00
s23_lib.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
s23_meth.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
s23_pkt.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
s23_srvr.c Re-align some comments after running the reformat script. 2015-01-22 09:31:48 +00:00
srtp.h Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
ssl-lib.com VMS fixups for 1.0.2 2015-01-07 02:15:35 +01:00
ssl.h Fix SSL compression symbol exporting 2016-05-17 09:23:36 +01:00
ssl2.h Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
ssl3.h Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
ssl23.h Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
ssl_algs.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
ssl_asn1.c Make no-psk compile without warnings. 2015-09-16 18:09:00 +01:00
ssl_cert.c Ensure we check i2d_X509 return val 2016-04-26 14:32:45 +01:00
ssl_ciph.c Fix SSL compression symbol exporting 2016-05-17 09:23:36 +01:00
ssl_conf.c Disable SSLv2 default build, default negotiation and weak ciphers. 2016-03-01 11:20:10 +00:00
ssl_err.c Handle SSL_shutdown while in init more appropriately #2 2016-02-08 09:30:57 +00:00
ssl_err2.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
ssl_lib.c Change usage of RAND_pseudo_bytes to RAND_bytes 2016-06-27 15:00:08 +01:00
ssl_locl.h Don't send signature algorithms when client_version is below TLS 1.2. 2016-05-09 17:49:30 +01:00
ssl_rsa.c Remove confusing comment. 2016-05-02 12:54:38 -04:00
ssl_sess.c Change usage of RAND_pseudo_bytes to RAND_bytes 2016-06-27 15:00:08 +01:00
ssl_stat.c Add Error state 2015-05-05 19:50:12 +01:00
ssl_task.c Re-align some comments after running the reformat script. 2015-01-22 09:31:48 +00:00
ssl_txt.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
ssl_utst.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
ssltest.c Fix ALPN 2016-04-04 13:45:09 -04:00
sslv2conftest.c Add a test for SSLv2 configuration 2016-03-01 11:20:35 +00:00
t1_clnt.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
t1_enc.c Fix a double free in tls1_setup_key_block 2016-05-19 20:55:55 +01:00
t1_ext.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
t1_lib.c Change usage of RAND_pseudo_bytes to RAND_bytes 2016-06-27 15:00:08 +01:00
t1_meth.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
t1_reneg.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
t1_srvr.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
t1_trce.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
tls1.h Fix references to various RFCs 2015-10-23 20:32:58 +02:00
tls_srp.c Code style: space after 'if' 2015-04-16 13:50:01 -04:00