freeswitch/libs/sofia-sip/libsofia-sip-ua/tport
Travis Cross 19fc943f59 Mitigate the CRIME TLS flaw
If an attacker can cause a device to make an authenticated request to
a service via TLS while including a payload of the attacker's choice
in that request, and if TLS compression is enabled, the attacker can
uncover the plaintext authentication information by making a series of
guesses and observing changes in the length of the ciphertext.

This is CVE-2012-4929.

FS-6360 --resolve

Thanks-to: Brian West <brian@freeswitch.org>
2014-03-16 16:24:58 +00:00
..
sofia-sip
ChangeLog
Doxyfile.in
Makefile.am
agent.pem
cafile.pem
certificates-update
certificates.html
make_node_cert.pl
make_root_cert.pl
make_test_certs.sh
test_tport.c
tls_test_client.c
tls_test_server.c
tport.c
tport.docs
tport_internal.h
tport_logging.c
tport_rand.c
tport_sigcomp.c
tport_stub_sigcomp.c
tport_stub_stun.c
tport_tag.c
tport_threadpool.c
tport_tls.c
tport_tls.h
tport_tls_test.sh
tport_type_connect.c
tport_type_sctp.c
tport_type_stun.c
tport_type_tcp.c
tport_type_tls.c
tport_type_udp.c
tport_type_ws.c
tport_ws.h
ws.c
ws.h