Security Advisories (1)
CVE-2009-0129 (2009-01-15)

Missing error check in do_verify, which might allow remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature.

Changes for version 0.10

  • Fixed Memory leak with signature object.
  • Added set_p, set_q, set_g, set_pub_key, set_priv_key (Olaf Kolkman)
  • Added set_r and set_s methods to Crypt::OpenSSL::DSA::Signature
  • Renamed Signature.pm to Signature.pod

Documentation

Digital Signature Object

Modules

Digital Signature Algorithm using OpenSSL