Monthly Status Report (January)

Matt Caswell matt at openssl.org
Thu Feb 3 18:06:09 UTC 2022


As well as normal reviews, attending regular OMC and OTC meetings, 
attending daily stand up meetings, responding to user queries, wiki user 
requests, OMC business, sys-admin, support customer issues, CLA 
submissions, handling security reports, etc., key activities this month:

Created a PR to clarify the EVP_PKEY_get_int_param() documentation (and 
similar
functions)
Investigated trust checking question
Investigated and fixed a problem with OSSL_DECODER_fetch
Backported an EVP_DigestInit_ex() memory leak fix to 1.1.1
Worked on the OMC voting policy, and tweaked the OTC one
Worked on the OTC testing policy
Wrote some documentation for X509_STORE_CTX_set0_purpose() and related 
functions
Wrote a proposal for a QUIC Proof of Concept
Reviewed the TFO submission
Investigated KTLS issues
Created a QUIC technical requirements document
Investigated OPENSSL_init_crypto problems and interaction with atexit
Started implementing a toy protocol for the API PoC
Started work on an SSL compat layer proof of concept based on a toy protocol
Looked at possible design for a generic comms API
Investigated the TAPS API 
(https://datatracker.ietf.org/doc/draft-ietf-taps-interface/)
Worked with other staff to consider estimates and forward planning of 
releases
beyond 3.1
Wrote a demo to illustrate a problem with PR17483
Took part in various discussions about the future of atexit()
Fixed a problem with openssl ciphers not honouring a propquery
Investigated and resolved an issue for a user regarding "openssl req"
Backported X509_STORE_CTX_set0_purpose() fix to 3.0 and 1.1.1
Issued security advisory for CVE-2021-4160

Matt


More information about the openssl-project mailing list