Conscrypt 1.1.0 released

40 views
Skip to first unread message

Adam Vartanian

unread,
Apr 4, 2018, 6:39:05 AM4/4/18
to conscrypt
Conscrypt 1.1.0 has been released. This release contains:

New features:
* An implementation of AlgorithmParameters.PSS
* An implementation of KeyGenerator.ARC4
* Experimental: APIs for the token binding negotiation IETF draft
(draft-ietf-tokbind-negotiation-09) and EKM (RFC 5705)
* Experimental: An API to set a global default BufferAllocator for SSLEngines

Significant behavior changes:
* getOutputSize() is now exactly accurate for AES/GCM and ChaCha20
ciphers instead of sometimes overstating how much buffer space was
required

Important bugfixes:
* 32-bit Windows builds can find their native libraries properly
* Invalid time values in certificates and CRLs no longer generate
NullPointerExceptions when accessed, they now generate parsing
exceptions when the certificates are created
* Several problems with the handling of short output buffers in
ciphers have been fixed
* Many potential finalization-related race conditions have been fixed

In addition to the usual suspects, thanks to GitHub users bsidhom,
cakofny, jeis2497052, keshavdv, and okorz001 for contributing to this
release.

- Adam
Reply all
Reply to author
Forward
0 new messages