Security Advisories (1)
CVE-2009-0129 (2009-01-15)

Missing error check in do_verify, which might allow remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature.

Changes for version 0.04

  • Fixed bug in verify method
  • Added read_priv_key_str and read_pub_key_str

Modules

Digital Signature Algorithm using OpenSSL