RE: Handshake Failure SSLv3 versions over 0.9.7a

2009-01-08 Thread Dewald, Matt
From: owner-openssl-us...@openssl.org [mailto:owner-openssl-us...@openssl.org] On Behalf Of Kyle Hamilton Sent: Thursday, January 08, 2009 3:14 AM To: openssl-users@openssl.org Subject: Re: Handshake Failure SSLv3 versions over 0.9.7a I would expect it has something to do with the following change

Re: Handshake Failure SSLv3 versions over 0.9.7a

2009-01-08 Thread Kyle Hamilton
I would expect it has something to do with the following change (from 0.9.7b CHANGELOG): + *) Countermeasure against the Klima-Pokorny-Rosa extension of + Bleichbacher's attack on PKCS #1 v1.5 padding: treat + a protocol version number mismatch like a decryption error + in ssl3_get