mirror of
https://git.suyu.dev/suyu/mbedtls.git
synced 2026-03-07 20:06:27 +00:00
Prevent SLOTH attacks
This commit is contained in:
committed by
Simon Butcher
parent
0eced5aae5
commit
182013faf4
@@ -2,6 +2,10 @@ mbed TLS ChangeLog (Sorted per branch, date)
|
||||
|
||||
= mbed TLS 2.x.x branch released xxxx-xx-xx
|
||||
|
||||
Security
|
||||
* Removed MD5 from the allowed hash algorithms for CertificateRequest and
|
||||
CertificateVerify messages, to prevent SLOTH attacks against TLS 1.2.
|
||||
|
||||
Bugfix
|
||||
* Fix the redefinition of macro ssl_set_bio to an undefined symbol
|
||||
mbedtls_ssl_set_bio_timeout in compat-1.3.h, by removing it.
|
||||
|
||||
Reference in New Issue
Block a user