Skip to content

OpenSSL 1.1.1k

Choose a tag to compare

@philyuchkoff philyuchkoff released this 26 Mar 17:35
· 159 commits to master since this release
1a54b4c

Major changes between OpenSSL 1.1.1j and OpenSSL 1.1.1k [25 Mar 2021]

  • Fixed a problem with verifying a certificate chain when using the X509_V_FLAG_X509_STRICT flag (CVE-2021-3450)
  • Fixed an issue where an OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client (CVE-2021-3449)