• src/sbbs3/js_cryptcon.c

    From deuce@1:103/705 to CVS commit on Tue Jan 2 22:41:48 2018
    src/sbbs3 js_cryptcon.c 1.7 1.8
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv10470/sbbs3

    Modified Files:
    js_cryptcon.c
    Log Message:
    Remove obsolete and no-longer-supported encryption



    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From rswindell@1:103/705 to CVS commit on Mon Feb 19 22:08:19 2018
    src/sbbs3 js_cryptcon.c 1.9 1.10
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv7418

    Modified Files:
    js_cryptcon.c
    Log Message:
    Address Coverity-reported "Explicit null dereferences".

    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From deuce@1:103/705 to CVS commit on Wed Feb 21 18:12:18 2018
    src/sbbs3 js_cryptcon.c 1.10 1.11
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv20063

    Modified Files:
    js_cryptcon.c
    Log Message:
    Add new private_key object to CryptContext (not in JSDOCS). Values are in
    the format required by ACMEv2/Let's Encrypt.

    Yes, this seems to be the easiest way to exfiltrate a private key from
    a cryptlib context.



    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From deuce@1:103/705 to CVS commit on Thu Feb 22 02:44:10 2018
    src/sbbs3 js_cryptcon.c 1.11 1.12
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv11726

    Modified Files:
    js_cryptcon.c
    Log Message:
    Add new create_signature() method.
    Don't force set the label, require the caller to set it.
    Fix up ASN.1 parsing of RSA certificates.



    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From deuce@1:103/705 to CVS commit on Thu Feb 22 02:48:35 2018
    src/sbbs3 js_cryptcon.c 1.12 1.13
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv12300

    Modified Files:
    js_cryptcon.c
    Log Message:
    Ah, THAT'S what the second argument HANDLE_PENDING() grew is.



    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From deuce@1:103/705 to CVS commit on Thu Feb 22 16:31:13 2018
    src/sbbs3 js_cryptcon.c 1.14 1.15
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv31925

    Modified Files:
    js_cryptcon.c
    Log Message:
    Fix JSDOCS build.



    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From deuce@1:103/705 to CVS commit on Thu Feb 22 18:03:57 2018
    src/sbbs3 js_cryptcon.c 1.15 1.16
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv10595

    Modified Files:
    js_cryptcon.c
    Log Message:
    Free pointer before re-using it as a temp variable.



    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From deuce@1:103/705 to CVS commit on Fri Feb 23 03:15:58 2018
    src/sbbs3 js_cryptcon.c 1.16 1.17
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv10345

    Modified Files:
    js_cryptcon.c
    Log Message:
    Strip leading zero bytes from public key values.



    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From deuce@1:103/705 to CVS commit on Tue Feb 27 01:38:19 2018
    src/sbbs3 js_cryptcon.c 1.18 1.19
    Update of /cvsroot/sbbs/src/sbbs3
    In directory cvs:/tmp/cvs-serv2708

    Modified Files:
    js_cryptcon.c
    Log Message:
    Fix support for ECDSA keys.



    --- SBBSecho 3.03-Win32
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Rob Swindell@1:103/705 to Git commit to main/sbbs/master on Mon Feb 15 21:33:43 2021
    https://gitlab.synchro.net/main/sbbs/-/commit/b911ee032d83ac1660511ec8
    Modified Files:
    src/sbbs3/js_cryptcon.c
    Log Message:
    Remove dead code in js_cryptcon_get() - reported by CoverityDeuce said to just delete it. <shrug>
    --- SBBSecho 3.12-Linux
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Deucе@1:103/705 to Git commit to main/sbbs/master on Tue Feb 16 09:32:11 2021
    https://gitlab.synchro.net/main/sbbs/-/commit/5a60ea6ee0b04500c53031bc
    Modified Files:
    src/sbbs3/js_cryptcon.c
    Log Message:
    Only patch I looked at in 68990cd was wrong.x points to the terminating NUL in x64. free()ing it would do wildand crazy things depending on how paranoid the free() implementationis.free(x64) instead... at least Coverity was happy though!
    --- SBBSecho 3.12-Linux
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Rob Swindell@1:103/705 to Git commit to main/sbbs/master on Sun Apr 4 15:13:57 2021
    https://gitlab.synchro.net/main/sbbs/-/commit/a54308df042510fa7c6755be
    Modified Files:
    src/sbbs3/js_cryptcon.c
    Log Message:
    Don't use mode without checking if NULL firstCID 319598
    --- SBBSecho 3.14-Linux
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)