mbedTLS v1.2.5 Release Notes

Release Date: 2013-02-02 // about 11 years ago
  • ๐Ÿ”„ Changes

    • Allow enabling of dummy error_strerror() to support some use-cases
    • Debug messages about padding errors during SSL message decryption are disabled by default and can be enabled with POLARSSL_SSL_DEBUG_ALL
    • Sending of security-relevant alert messages that do not break interoperability can be switched on/off with the flag POLARSSL_SSL_ALL_ALERT_MESSAGES

    ๐Ÿ”’ Security

    • Removed timing differences during SSL message decryption in ssl_decrypt_buf() due to badly formatted padding