MatrixSSL 3.8.7

MatrixSSL 3.8.7

Nov 25, 2016

This version fixes several critical bugs and is recommended for all users.

Thank you to security researcher Hanno Böck for finding and reporting the computation problem in pstm.c.

Download matrixssl-3-8-7b-open.tar.gz

  1. BUG FIXES SINCE 3.8.6
    • Fixed Wrong Computation Results Bug In pstm.c Division
    • Fixed Memory Corruption In psDhImportPubKey
    • Fixed RSA Public Key Read Overflow
    • X.509/CRL/OCSP Timestamp Validation
    • Unix Year 2038 Problem Fix
    • Stricter OID Comparison
    • Multibyte String Handling
    • Configuration Robustness Improvements
    • X.509 Certificate Parsing Read Overflow
    • PKCS #8 Buffer Read Overflow
    • OCSP Bug Fixes
    • Generic Bug Fixes For Test Programs
    • Changes to Recommended Configurations
    • psMutex Locking and Unlocking APIs Compiler Warnings Removed
    • MD5 and SHA-1 Combined Digest Function
    • Coverity Issues Fixed
    • Yarrow Build Issues Fixed
  2. NEW FEATURES SINCE 3.8.6
    • SHA-512 for X.509 Certificates Improvements
    • OCSP Improvements
    • X.509 Certificate Domain Components
    • New Configuration: Minimal PSK

Full list of changes: CHANGES.md.

Subscribe

Subscribe via RSS.

Tags

News (22) Releases (48)

Recent Posts

About

MatrixSSL™ is an embedded SSL and TLS implementation designed for small footprint applications and devices.

Links

Company

Copyright (c) INSIDE Secure Corp., 2002-2016. All Rights Reserved.