mbedTLS v1.2.5 Release Notes
Release Date: 2013-02-02 // about 11 years ago-
๐ Changes
- Allow enabling of dummy error_strerror() to support some use-cases
- Debug messages about padding errors during SSL message decryption are disabled by default and can be enabled with POLARSSL_SSL_DEBUG_ALL
- Sending of security-relevant alert messages that do not break interoperability can be switched on/off with the flag POLARSSL_SSL_ALL_ALERT_MESSAGES
๐ Security
- Removed timing differences during SSL message decryption in ssl_decrypt_buf() due to badly formatted padding