Commit Graph

  • db68813cb9 sc25519: Fix integer types in sc25519_mul() Andreas Schneider 2019-10-31 13:54:39 +01:00
  • affb43a45f fe25519: Fix integer types of fe25519_iszero() Andreas Schneider 2019-10-31 13:52:49 +01:00
  • 1e71951a51 include: Fix integer type of dh_pn and dh_pmax Andreas Schneider 2019-10-31 13:48:08 +01:00
  • 297aed60c4 channels: Return size_t for count_ptrs() Andreas Schneider 2019-11-05 13:32:41 +01:00
  • 4e5dfd677e channels: Fix integer and bool argument of channel_default_bufferize() Andreas Schneider 2019-10-31 13:44:02 +01:00
  • 34fd4ebfc3 channels: Fix type of arguments of grow_window() Andreas Schneider 2019-10-31 13:40:09 +01:00
  • 0080ac1f03 channels: Fix type of arguments of channel_open() Andreas Schneider 2019-10-31 13:39:07 +01:00
  • dd4eb4a288 channels: Use ssize_t for to_read Andreas Schneider 2019-10-31 13:31:46 +01:00
  • a967258649 channels: Reformat ssh_channel_read_nonblocking() Andreas Schneider 2019-10-31 13:28:42 +01:00
  • e0e3636c60 channels: Use a size_t variable for length check Andreas Schneider 2019-10-31 11:16:21 +01:00
  • c0e5393927 channesl: Reformat ssh_channel_poll_timeout() Andreas Schneider 2019-10-31 11:15:41 +01:00
  • 36bdcb85b3 auth: Fix integer type in ssh_kbdint_free() Andreas Schneider 2019-10-31 11:12:52 +01:00
  • cf34ba92bf auth: Fix integer type in ssh_kbdint_clean() Andreas Schneider 2019-10-31 10:30:14 +01:00
  • f5f547f35e examples: Fix integer types in libssh_scp.c Andreas Schneider 2019-10-31 10:28:22 +01:00
  • 1eed0cbd3d examples: Remove internal include from sshd_direct-tcpip.c Andreas Schneider 2019-11-08 12:13:23 +01:00
  • 1668bd8baf CVE-2019-14889: scp: Quote location to be used on shell Anderson Toshiyuki Sasaki 2019-10-31 18:10:27 +01:00
  • 245be62438 CVE-2019-14889: scp: Don't allow file path longer than 32kb Andreas Schneider 2019-12-06 09:40:30 +01:00
  • 8ce782f9ec CVE-2019-14889: tests: Add unit tests for ssh_quote_file_name() Anderson Toshiyuki Sasaki 2019-10-22 19:45:13 +02:00
  • db34fd44fb CVE-2019-14889: misc: Add function to quote file names Anderson Toshiyuki Sasaki 2019-10-22 16:08:24 +02:00
  • 00dd3f864b CVE-2019-14889: scp: Log SCP warnings received from the server Anderson Toshiyuki Sasaki 2019-10-25 13:24:28 +02:00
  • 52550994c5 CVE-2019-14889: scp: Reformat scp.c Anderson Toshiyuki Sasaki 2019-10-31 17:56:34 +01:00
  • 182d363b27 CVE-2019-14889: tests: Add tests for SCP client Anderson Toshiyuki Sasaki 2019-10-25 13:27:48 +02:00
  • f9189a8a9a packet: Do not deref a NULL pointer in ssh_packet_set_newkeys() Andreas Schneider 2019-10-22 11:52:28 +02:00
  • 56c079cbb2 SSH-01-003: Add cipher NULL checks to ssh_packet_get_current_crypto() Andreas Schneider 2019-10-22 11:26:02 +02:00
  • ab24d64241 Use only one variable denoting the size of methods arrays Jakub Jelen 2019-11-01 14:59:27 +01:00
  • 7856ae594b session: Initialize states explicitly Anderson Toshiyuki Sasaki 2019-11-05 14:17:47 +01:00
  • eeb9ae15c7 messages: Set signature state explicitly Anderson Toshiyuki Sasaki 2019-11-05 14:16:06 +01:00
  • 8837d32d92 channels: Initialize states explicitly Anderson Toshiyuki Sasaki 2019-11-05 14:14:16 +01:00
  • 0408d8d851 auth: Set auto_state->state explicitly Anderson Toshiyuki Sasaki 2019-11-05 14:10:01 +01:00
  • bab8d84d13 session: Use ssh_packet_state_e instead of int Anderson Toshiyuki Sasaki 2019-11-05 14:07:36 +01:00
  • 6ee159d9d2 messages: Use ssh_publickey_state_e instead of char Anderson Toshiyuki Sasaki 2019-11-05 14:05:32 +01:00
  • 71ff06d04a session: Reformat ssh_new() Anderson Toshiyuki Sasaki 2019-11-05 10:26:15 +01:00
  • 574690ae2e config: Ignore empty lines to avoid OOB array access Jakub Jelen 2019-10-29 14:49:36 +01:00
  • c7cacf986f tests: Check behavior of match_pattern() Jakub Jelen 2019-10-29 13:21:14 +01:00
  • 31f9c39479 match: Limit possible recursion when parsing wildcards to a sensible number Jakub Jelen 2019-10-29 14:12:56 +01:00
  • cf0beff987 match: Avoid recursion with many asterisks in pattern Jakub Jelen 2019-10-29 14:02:23 +01:00
  • 178b53f924 pki: Fix possible information leak via uninitialized stack buffer Andreas Schneider 2019-10-31 10:20:00 +01:00
  • e065d2bb3f pki_container_openssh: Initialize pointers to NULL Andreas Schneider 2019-10-31 10:17:04 +01:00
  • 9d67ca251c SSH-01-012: Fix information leak via uninitialized stack buffer Andreas Schneider 2019-10-31 10:06:00 +01:00
  • cb0ccf372e SSH-01-010: Improve documentation for fingerprinting functions Andreas Schneider 2019-10-31 10:40:16 +01:00
  • 1fa1a467ed doc: Use https where possible Jakub Jelen 2019-11-01 16:01:33 +01:00
  • 606a97c4d6 doc: Update the list of RFCs and clearly mention which are not implemented in libssh Jakub Jelen 2019-11-01 16:00:13 +01:00
  • cc9db5b56c tests: Add a test for SCP with protocol message injection Anderson Toshiyuki Sasaki 2019-11-04 17:06:26 +01:00
  • bab7ba0146 scp: Do not allow newlines in pushed files names Anderson Toshiyuki Sasaki 2019-11-04 16:16:41 +01:00
  • c9ce8fa40b misc: Add a function to encode newlines Anderson Toshiyuki Sasaki 2019-11-04 15:35:15 +01:00
  • 6c79ed9801 gzip: Use SSH_BUFFER_FREE() Andreas Schneider 2019-11-05 13:18:32 +01:00
  • 7ae47df16a knownhosts: Use SSH_BUFFER_FREE() Andreas Schneider 2019-11-05 13:17:49 +01:00
  • 6734516278 pcap: Use SSH_BUFFER_FREE() Andreas Schneider 2019-11-05 13:16:55 +01:00
  • 3cf665a53d base64: Use SSH_BUFFER_FREE() Andreas Schneider 2019-11-05 13:16:17 +01:00
  • 35799bb1c6 packet: Use SSH_BUFFER_FREE() Andreas Schneider 2019-11-05 13:15:33 +01:00
  • 476bde4d69 socket: Use SSH_BUFFER_FREE() Andreas Schneider 2019-11-05 13:15:08 +01:00
  • 0938d397be examples: Use SSH_STRING_FREE_CHAR() Andreas Schneider 2019-11-05 13:14:12 +01:00
  • 4e809ef122 tests: Use SSH_STRING_FREE() Andreas Schneider 2019-11-05 13:12:08 +01:00
  • 80d092037f dh-gex: Use SSH_STRING_FREE() Andreas Schneider 2019-11-05 13:10:56 +01:00
  • 45d9802e1b message: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-31 09:42:33 +01:00
  • 5db5e7e527 message: Use SSH_STRING_FREE() Andreas Schneider 2019-10-31 09:42:10 +01:00
  • d7abfe7e8f pki_container_openssh: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-31 09:41:09 +01:00
  • f422fb02f6 pki_container_openssh: Use SSH_STRING_FREE Andreas Schneider 2019-10-31 09:40:08 +01:00
  • b719f705c6 gssapi: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 13:53:43 +01:00
  • 3b8fcbad24 gssapi: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:53:14 +01:00
  • 3ab8b76921 kex: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 13:52:32 +01:00
  • 7c3a6ca6bc kex: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:52:05 +01:00
  • 6eb34cec33 agent: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 13:50:49 +01:00
  • 45ee892327 agent: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:49:51 +01:00
  • 321b27b788 server: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:48:59 +01:00
  • ac33b3adbc ecdh_mbedcrypto: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:47:06 +01:00
  • 5e21c24fab dh: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:45:32 +01:00
  • abe1bf910e ecdh: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:44:38 +01:00
  • 752c906ea7 channels: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 13:43:46 +01:00
  • 1832ed4fef channels: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:43:06 +01:00
  • 4cae57c581 sftp: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 13:34:22 +01:00
  • 9384a18e91 sftp: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:33:53 +01:00
  • 88a3dd86f1 packet_cb: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 13:33:21 +01:00
  • 449c0d66cc sftpserver: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:32:49 +01:00
  • 4cd084f13b packet_cb: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 13:31:52 +01:00
  • 9020f4e63a curve25519: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:27:19 +01:00
  • 6596ee9fb2 auth: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:26:23 +01:00
  • 25f1c80950 session: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 12:24:32 +01:00
  • 5e6cb6891f session: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:23:56 +01:00
  • 0684f1b94a pki_mbedcrypto: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 12:12:27 +01:00
  • 42547772df pki_mbedcrypto: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:11:58 +01:00
  • 288bbd5bd0 ecdh_crypto: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:14:37 +01:00
  • 8525b4bb01 pki_crypto: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 12:10:33 +01:00
  • d97770b025 pki_crypto: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:09:53 +01:00
  • f89cf79c49 pki: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 12:09:07 +01:00
  • 189fd76589 pki: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:08:41 +01:00
  • 2786a3e96a ecdh_gcrypt: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:28:24 +01:00
  • 09dfda8489 libcrypto: Use SSH_STRING_FREE() Andreas Schneider 2019-10-28 12:25:30 +01:00
  • 9a112f1548 pki_gcrypt: Use SSH_BUFFER_FREE() Andreas Schneider 2019-10-28 12:07:47 +01:00
  • 4e2d85745f pki_gcrypt: Use SSS_STRING_FREE() Andreas Schneider 2019-10-28 12:06:41 +01:00
  • 032f25aab3 SSH-01-007: Fix possible double free of ssh strings Andreas Schneider 2019-10-28 12:00:07 +01:00
  • da81b99df1 gssapi: Make sure buffer is initialized Andreas Schneider 2019-10-31 11:42:17 +01:00
  • af2aeba838 SSH-01-006: Add missing NULL check in sftp_open() Andreas Schneider 2019-10-28 14:33:11 +01:00
  • 9ae81c5ceb SSH-01-006: Add missing NULL check in server_set_kex() Andreas Schneider 2019-10-28 14:31:54 +01:00
  • 8aa2bbd0dc SSH-01-006: Add missing NULL check in ssh_scp_push_directory() Andreas Schneider 2019-10-28 14:29:44 +01:00
  • fff4120cbf SSH-01-006: Add missing NULL checks in ssh_scp_push_file64() Andreas Schneider 2019-10-28 14:28:32 +01:00
  • 7b9cbcebe5 SSH-01-006: Add missing NULL checks in pki_signature_from_rsa_blob() Andreas Schneider 2019-10-28 14:26:27 +01:00
  • 56d571ab81 SSH-01-006: Add missing NULL check in ssh_pki_do_sign_agent() Andreas Schneider 2019-10-28 14:22:52 +01:00
  • 69daa602b8 SSH-01-006: Add missing NULL check in ssh_packet_hmac_verify() Andreas Schneider 2019-10-28 14:20:39 +01:00
  • 924dc5aed8 SSH-01-006: Add missing NULL check in gzip_decompress() Andreas Schneider 2019-10-28 14:18:20 +01:00