From: Dr. Stephen Henson Date: Fri, 30 Oct 2009 13:29:30 +0000 (+0000) Subject: Move CHANGES entry to 0.9.8l section X-Git-Tag: OpenSSL-fips-2_0-rc1~1463 X-Git-Url: https://granicus.if.org/sourcecode?a=commitdiff_plain;h=bb4060c5b564012cc5bc8223dc76888d5ac587ae;p=openssl Move CHANGES entry to 0.9.8l section --- diff --git a/CHANGES b/CHANGES index 63bf72c595..7c0664edb3 100644 --- a/CHANGES +++ b/CHANGES @@ -4,15 +4,6 @@ Changes between 0.9.8k and 1.0 [xx XXX xxxx] - *) Fixes to stateless session resumption handling. Use initial_ctx when - issuing and attempting to decrypt tickets in case it has changed during - servername handling. Use a non-zero length session ID when attempting - stateless session resumption: this makes it possible to determine if - a resumption has occurred immediately after receiving server hello - (several places in OpenSSL subtly assume this) instead of later in - the handshake. - [Steve Henson] - *) Update OCSP request code to permit adding custom headers to the request: some responders need this. [Steve Henson] @@ -849,6 +840,15 @@ Changes between 0.9.8k and 0.9.8l [xx XXX xxxx] + *) Fixes to stateless session resumption handling. Use initial_ctx when + issuing and attempting to decrypt tickets in case it has changed during + servername handling. Use a non-zero length session ID when attempting + stateless session resumption: this makes it possible to determine if + a resumption has occurred immediately after receiving server hello + (several places in OpenSSL subtly assume this) instead of later in + the handshake. + [Steve Henson] + *) The functions ENGINE_ctrl(), OPENSSL_isservice(), CMS_get1_RecipientRequest() and RAND_bytes() can return <=0 on error fixes for a few places where the return code is not checked