An open source, portable, easy to use, readable and flexible SSL library
Go to file
Manuel Pégourié-Gonnard 9b75305d6a Fix potential buffer overflow in mpi_read_string()
Found by Guido Vranken.

Two possible integer overflows (during << 2 or addition in BITS_TO_LIMB())
could result in far too few memory to be allocated, then overflowing the
buffer in the subsequent for loop.

Both integer overflows happen when slen is close to or greater than
SIZE_T_MAX >> 2 (ie 2^30 on a 32 bit system).

Note: one could also avoid those overflows by changing BITS_TO_LIMB(s << 2) to
CHARS_TO_LIMB(s >> 1) but the solution implemented looks more robust with
respect to future code changes.
2015-10-01 16:59:55 +02:00
doxygen Bump version to 1.2.15 2015-09-17 11:55:25 +02:00
include Bump version to 1.2.15 2015-09-17 11:55:25 +02:00
library Fix potential buffer overflow in mpi_read_string() 2015-10-01 16:59:55 +02:00
programs Disable -Wunused-result in programs and tests 2015-08-11 03:42:34 +02:00
scripts Fix GNUism in bump_version.sh 2015-09-17 11:54:19 +02:00
tests Bump version to 1.2.15 2015-09-17 11:55:25 +02:00
visualc Fixed MS VC project files 2013-10-04 13:20:40 +02:00
.gitignore Added proper gitignores for Linux CMake use 2012-11-18 22:56:39 +01:00
.travis.yml Travis configuration file for 1.2 branch 2014-07-08 18:28:32 +02:00
ChangeLog Fix potential buffer overflow in mpi_read_string() 2015-10-01 16:59:55 +02:00
CMakeLists.txt Fix bug with cmake and old version of GCC 2015-08-10 16:40:02 +02:00
DartConfiguration.tcl - Added basic Dart config file 2009-07-08 19:48:13 +00:00
LICENSE - Changed line endings and encodings to unix and utf-8 2011-01-05 14:48:42 +00:00
Makefile - Added uninstall target 2012-11-13 10:28:43 +00:00
README - Fixed texts 2009-10-04 15:15:34 +00:00

README for PolarSSL

-- COMPILING
There are currently three active build systems within the PolarSSL releases:
 - Make
 - CMake
 - Microsoft Visual Studio

The main system used for development is CMake. That system is always the most up-to-date. The others should reflect all changes present in the CMake build system, but some features are not ported there by default.

--- Make
In order to build the source using Make, just enter at the command line:
make

In order to run the tests, enter:
make check

--- CMake
In order to build the source using CMake, just enter at the command line:
cmake .
make

There are 3 different active build modes specified within the CMake buildsystem:
 - Release
   This generates the default code without any unnecessary information in the binary files.
 - Debug
   This generates debug information and disables optimization of the code.
 - Coverage
   This generates code coverage information in addition to debug information.

Switching build modes in CMake is simple. For debug mode, enter at the command line:
cmake -D CMAKE_BUILD_TYPE:String="Debug" .

In order to run the tests, enter:
make test

--- Microsoft Visual Studio
The build files for Microsoft Visual Studio are generated for Visual Studio 6.0 all future Visual Studio's should be able to open and use this older version of the build files.

The workspace 'polarssl.dsw' contains all the basic projects needed to build the library and all the programs. The files in tests are not generated and compiled, as these need a perl environment as well.