Product Info
With the Open SSL 0.9.7c library, developers can write applications that take advantage of Secure Sockets Layer (SSL v2/v3), Transport Layer Security (TLS v1), and a full-strength general-purpose cryptography library. Security features such as data integrity, authenticity, and privacy can be implemented. To compile for Win32, Perl or compiling under Cygwin is required. Some of the encryption routines/algorithms are covered by patents.
What's new in current version
Stop out of bounds reads in the ASN1 code when presented with invalid tags (CAN-2003-0543 and CAN-2003-0544).
Free up ASN1_TYPE correctly if ANY type is invalid (CAN-2003-0545).
If verify callback ignores invalid public key errors don't try to check certificate signature with the NULL public key.