[openssl/openssl] 3226a3: Correct NEWS entry about required security level f...

pauli noreply at reply.github.openssl.org
Fri May 6 00:43:56 UTC 2022


  Branch: refs/heads/openssl-3.0
  Home:   https://github.openssl.org/openssl/openssl
  Commit: 3226a37a4875567f2bf49aa44a727bcb67bb7dcd
      https://github.openssl.org/openssl/openssl/commit/3226a37a4875567f2bf49aa44a727bcb67bb7dcd
  Author: Pauli <pauli at openssl.org>
  Date:   2022-05-06 (Fri, 06 May 2022)

  Changed paths:
    M NEWS.md

  Log Message:
  -----------
  Correct NEWS entry about required security level for old versions of TLS, DTLS and SSL

The entry was incorrect because suites using RSA key exchange without SHA1
were permitted at security level 1.

Partial fix for #18194

Reviewed-by: Tomas Mraz <tomas at openssl.org>
Reviewed-by: Matt Caswell <matt at openssl.org>
Reviewed-by: Shane Lontis <shane.lontis at oracle.com>
(Merged from https://github.com/openssl/openssl/pull/18234)




More information about the openssl-commits mailing list