diff options
author | Matt Johnston <matt@ucc.asn.au> | 2005-05-09 09:31:49 +0000 |
---|---|---|
committer | Matt Johnston <matt@ucc.asn.au> | 2005-05-09 09:31:49 +0000 |
commit | eb741b9cc950838f4cc0aa7d9ef4a4e6a14150fd (patch) | |
tree | 911877b921495b0f8f7c5b1b9d5d4af896475667 | |
parent | 68445e1e34d6a64e0ef862205ceeaa39ee4726a6 (diff) |
Preparing for 0.46
--HG--
extra : convert_revision : 7f9d2401cc4f49955f59327a6e8213b1911784bf
-rw-r--r-- | CHANGES | 21 | ||||
-rw-r--r-- | TODO | 4 |
2 files changed, 23 insertions, 2 deletions
@@ -1,3 +1,24 @@ +0.46 + +- Fix long-standing bug which caused connections to be closed if an ssh-agent + socket was no longer available + +- print a warning if we seem to be blocking on /dev/random + (suggested by Paul Fox) + +- fixed a memory leak in DSS code (thanks to Boris Berezovsky for the patch) + +- dbclient -L no longer segfaults, allocate correct buffer size (thanks + to David Cook for reporting it) + +- added RSA blinding (recommended by Dan Kaminsky) + +- rearranged bignum reading/random generation code + +- Reset the non-blocking status on stderr and stdout as well as stdin, + fixes a problem where the shell running dbclient will exit (thanks to + Brent Roman for reporting it) + 0.45 - Mon March 7 2005 - Makefile no longer appends 'static' to statically linked binaries @@ -13,9 +13,9 @@ Things which might need doing: - Binding to different interfaces -- possible RSA blinding? need to check whether this is vuln to timing attacks - check PRNG -- CTR mode, SSH_MSG_IGNORE sending to improve CBC security +- CTR mode +- SSH_MSG_IGNORE sending to improve CBC security - DH Group Exchange possibly, or just add group14 (whatever it's called today) - fix scp.c for IRIX |